Ruby on rails database connection file
Ruby on rails database connection file
Published on 2007-10-25. Updated on 2007-10-25.
Description:
The Ruby on Rails database connection file has been found. The file contains sensitive database connection information such as the name of the database, database credentials (username and password) and the host where the database is located.
Impact:
This file may expose sensitive information that may help an malicious user to prepare more advanced attacks.
Recommendation:
The access to this file should be restricted.he access to this file should be restricted.
Alert Tags: information_disclosure
ApplicableApplicationServer : All
ApplicableOS: All
ApplicableWebServer: All
References:
Go Back