Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Ruby agent 3.2.0 through 3.5.2 serializes sensitive data when communicating with servers operated by New Relic, which allows remote attackers to obtain sensitive information (database credentials and SQL statements) by sniffing the network and deserializing the data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
New Relic RPM Ruby Agent 信息泄露漏洞
Vulnerability Description
New Relic RPM Ruby Agent是一款RPM应用性能管理工具。 New Relic RPM Ruby Agent 3.2.0至3.5.2版本中存在信息泄露漏洞。攻击者利用该漏洞获得访问到敏感信息的权限有助于进一步攻击。
CVSS Information
N/A
Vulnerability Type
N/A