Vulnerabilities > Lean Ruport Project

DATE CVE VULNERABILITY TITLE RISK
2018-01-10 CVE-2014-4998 Information Exposure vulnerability in Lean-Ruport Project Lean-Ruport 0.3.8
test/tc_database.rb in the lean-ruport gem 0.3.8 for Ruby places the mysql user password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.
local
low complexity
lean-ruport-project CWE-200
7.8