News and Notes from the Makers of Nexus | Sonatype Blog

Exploit Code, Metasploit Module Out for Ruby on Rails Flaws

Written by Ali Loney | January 10, 2013

Threatpost – (International) Exploit code, Metasploit module out for Ruby on Rails flaws. Proof-of-concept exploit code and a penetration testing module were released for several Ruby on Rails vulnerabilities that could allow arbitrary code execution and installation of backdoors. This presents a major vulnerability for websites using versions other than the most recently released.