Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The REXML module in Ruby 1.8.6 through 1.8.6-p287, 1.8.7 through 1.8.7-p72, and 1.9 allows context-dependent attackers to cause a denial of service (CPU consumption) via an XML document with recursively nested entities, aka an "XML entity explosion."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby REXML 拒绝服务漏洞
Vulnerability Description
Ruby是一种功能强大的面向对象的脚本语言。 Ruby所使用REXML库解析入站的XML请求存在漏洞。 通过特制的包含递归嵌套XML文档,可使得CPU资源耗尽,从而造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A