SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Ruby on Rails Active Storage deserialization remote code execution attempt
This event is generated when there is a Ruby on Rails Active Storage deserialization remote code execution attempt. Impact: CVSS v3.0 Severity and Metrics: CVSS base score 9.8 CVSS impact score 5.9 CVSS exploitability score: 3.9 Confidentiality (C): High Integrity (I): High Availability (A): High Details: Ease of Attack: Simple
No information provided
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
CVE-2019-5420 |
Loading description ![]() |