Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lib/sounder/sound.rb in the sounder gem 1.0.1 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby sounder gem 远程命令注入漏洞
Vulnerability Description
Ruby是日本软件开发者松本行弘所研发的一种跨平台、面向对象的动态类型编程语言。sounder gem是一个用于向Ruby程序提供声音的gem包。 Ruby的sounder gem 1.0.1版本中的lib/sounder/sound.rb文件中存在安全漏洞。远程攻击者可借助文件名中的shell元字符利用该漏洞执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A