rack

1 article
Sort: New Top Best
clear filter
0

An RCE vulnerability was discovered via Rack's ShowExceptions middleware being enabled in production, which leaked the Rails secret token used to sign cookies. The attacker used this token to forge authenticated cookies and execute arbitrary commands on the server.

Rack Rails ShowExceptions action_dispatch.secret_token secret_token.rb robertheaton.com
sites.google.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details