Vulnerabilities > CVE-2017-0909 - Unspecified vulnerability in Private Address Check Project Private Address Check
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The private_address_check ruby gem before 0.4.1 is vulnerable to a bypass due to an incomplete blacklist of common private/local network addresses used to prevent server-side request forgery.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |