lib/dragonfly/imagemagickutils.rb in the fog-dragonfly gem 0.8.2 for Ruby allows remote attackers to execute arbitrary commands via unspecified vectors.
Link | Tags |
---|---|
http://seclists.org/fulldisclosure/2013/Sep/18 | mailing list exploit |
http://seclists.org/oss-sec/2013/q3/528 | mailing list exploit |
http://www.vapid.dhs.org/advisories/fog-dragonfly-0.8.2-cmd-inj.html | exploit |
http://seclists.org/oss-sec/2013/q3/526 | mailing list exploit |
http://www.osvdb.org/96798 | vdb entry |