ADVISORIES
- CVE-2014-5001 (NVD)
- GHSA-6fcq-3cm2-j3j5
- OSVDB-108571
GEM
SEVERITY
CVSS v3.x: 7.8 (High)
CVSS v2.0: 2.1 (Low)
PATCHED VERSIONS
None.
DESCRIPTION
kcapifony Gem for Ruby contains a flaw in /lib/ksymfony1.rb that is triggered as the program displays password information in plaintext in the process list. This may allow a local attacker to gain access to password information.