CVE-2024-22049

CVSS V2 None CVSS V3 None
Description
httparty before 0.21.0 is vulnerable to an assumed-immutable web parameter vulnerability. A remote and unauthenticated attacker can provide a crafted filename parameter during multipart/form-data uploads which could result in attacker controlled filenames being written.
Overview
  • CVE ID
  • CVE-2024-22049
  • Assigner
  • VulnCheck
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-04T20:19:02.547Z
  • Last Modified Date
  • 2024-01-04T20:19:02.547Z
History
Created Old Value New Value Data Type Notes
2024-06-26 08:58:17 Added to TrackCVE