Description
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
Remediation
References
Related Vulnerabilities
Joomla! Core 3.9.x Information Disclosure (3.9.0 - 3.9.22)
Oracle Database Server CVE-2008-2613 Vulnerability (CVE-2008-2613)
WordPress 'xmlrpc.php' Remote Security Bypass Vulnerability (3.0.1 - 3.0.2)
WordPress Plugin FL3R FeelBox Multiple Vulnerabilities (8.1)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-0113)