1 results (0.003 seconds)
CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-3779 – Ruby-MySQL Gem Client File Read
https://notcve.org/view.php?id=CVE-2021-3779
28 Jun 2022 — A malicious MySQL server can request local file content from a client using ruby-mysql prior to version 2.10.0 without explicit authorization from the user. This issue was resolved in version 2.10.0 and later. Un servidor MySQL malicioso puede solicitar el contenido de un archivo local a un cliente usando ruby-mysql versiones anteriores a 2.10.0, sin autorización explícita del usuario. Este problema ha sido resuelto en versiones 2.10.0 y posteriores • https://www.rapid7.com/blog/post/2022/06/28/cve-2021-3779-ruby-mysql-gem-client-file-read-fixed • CWE-610: Externally Controlled Reference to a Resource in Another Sphere •