In Action View 5.2.2.1, 5.1.6.2, 5.0.7.2, 4.2.11.1, and v3, specially crafted accept headers can disclose the contents of arbitrary files on the target system’s file system, resulting in a File Content Disclosure vulnerability.
Recommendations
Update rails to the latest version
Written by
Rejah Rehim
Co-founder, Director
Experience the Beagle Security platform
Unlock one full penetration test and all Advanced plan features free for 10 days