Description
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.
Remediation
References
Related Vulnerabilities
Lighttpd Other Vulnerability (CVE-2006-0814)
Moodle Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2021-36400)
Oracle JRE CVE-2023-21968 Vulnerability (CVE-2023-21968)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-2348)
WordPress Plugin Seriously Simple Podcasting Cross-Site Request Forgery (2.16.0)