CVE-2010-3299
The encrypt/decrypt functions in Ruby on Rails 2.3 are vulnerable to padding oracle attacks.
The encrypt/decrypt functions in Ruby on Rails 2.3 are vulnerable to padding oracle attacks.
MEDIUM · CVSS 6.5
EPSS 0.0027
Schedule remediation
- Public exploit or PoC is available
Sigma rules1
YARA rules0