CVE-2013-2616

EPSS 0.88%

MiniMagick Gem for Ruby URI Handling Arbitrary Command Injection

Published: 10/24/2017Modified: 12/5/2024
Also known as:GHSA-w754-gq8r-pf5f

Description

`lib/mini_magick.rb` in the MiniMagick Gem 1.3.1 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.

Affected packages (1)

References (7)