Ruby on Rails Development Web Console (v2) Code Execution

Discussion in 'News Aggregator' started by Packet Storm, 7 May 2016.

  1. Packet Storm

    Packet Storm Guest

    This Metasploit module exploits a remote code execution feature of the Ruby on Rails framework. This feature is exposed if the config.web_console.whitelisted_ips setting includes untrusted IP ranges and the web-console gem is enabled.

    Continue reading...
     

Share This Page

Loading...