Loading HuntDB...

reports.breadcrumb.com is vulnerable for Arbitrary file existence disclosur CVE-2014-7829

Low
U
Upserve
Submitted None

Team Summary

Official summary from Upserve

A directory traversal vulnerability in a third-party ruby gem allowed a remote actor to determine the existence (but not the contents) of files outside of the application root.

Reported by s3curityb3ast

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$200.00

Submitted

Weakness

Information Disclosure