Looking for the vulnerability index of Invicti's legacy products?
Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) - Vulnerability Database

Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933)

Description

Ruby on Rails 2.3.9 and 3.0.0 does not properly handle nested attributes, which allows remote attackers to modify arbitrary records by changing the names of parameters for form inputs.

References

Related Vulnerabilities