Vulnerability Intelligence Report
CVE-2009-2422
The example code for the digest authentication functionality (http_authentication.rb) in Ruby on Rails before 2.3.3 defines an authenticate_or_request_with_http_digest block that returns nil instead of false when the user does not exist, which allows context-dependent attackers to bypass authentication for applications that are derived from this example by sending an invalid username without a password.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:3.38%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| rubyonrails | ruby_on_rails | all |
| apple | mac_os_x | 10.5.8 |
| apple | mac_os_x_server | 10.5.8 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
3.377%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2009-07-10T00:00:00 |
| Published | 2009-07-10T15:00:00 |
| Patch Date | 2009-06-03 |
| Last Updated | 2024-08-07T05:52:14 |
Community Chatter & Buzz