CVE-2019-5420

CRITICAL

Ruby On Rails DoubleTap Development Mode secret_key_base Vulnerability

Title source: metasploit

Description

A remote code execution vulnerability in development mode Rails <5.2.2.1, <6.0.0.beta3 can allow an attacker to guess the automatically generated development mode secret token. This secret token can be used in combination with other Rails internals to escalate to a remote code execution exploit.

Exploits (14)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/46785
nomisec WORKING POC 8 stars
by knqyf263 · poc
https://github.com/knqyf263/CVE-2019-5420
nomisec WORKING POC 5 stars
by laffray · poc
https://github.com/laffray/ruby-RCE-CVE-2019-5420-
nomisec WORKING POC 5 stars
by j4k0m · poc
https://github.com/j4k0m/CVE-2019-5420
nomisec WORKING POC 3 stars
by scumdestroy · poc
https://github.com/scumdestroy/CVE-2019-5420.rb
nomisec WORKING POC 1 stars
by WildWestCyberSecurity · poc
https://github.com/WildWestCyberSecurity/cve-2019-5420-POC
nomisec WORKING POC
by sealldeveloper · poc
https://github.com/sealldeveloper/CVE-2019-5420-PoC
nomisec STUB
by cved-sources · poc
https://github.com/cved-sources/cve-2019-5420
nomisec WORKING POC
by PenTestical · poc
https://github.com/PenTestical/CVE-2019-5420
nomisec WORKING POC
by trickstersec · poc
https://github.com/trickstersec/CVE-2019-5420
nomisec WORKING POC
by mmeza-developer · poc
https://github.com/mmeza-developer/CVE-2019-5420-RCE
nomisec WORKING POC
by Eremiel · poc
https://github.com/Eremiel/CVE-2019-5420
nomisec WORKING POC
by AnasTaoutaou · poc
https://github.com/AnasTaoutaou/CVE-2019-5420
metasploit WORKING POC EXCELLENT
by ooooooo_q, mpgn, sinn3r · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/rails_double_tap.rb

Scores

CVSS v3 9.8
EPSS 0.9375
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-330 CWE-77
Status published
Products (5)
debian/debian_linux 8.0
fedoraproject/fedora 30
rubygems/railties 5.2.0 - 5.2.2.1RubyGems
rubyonrails/rails 6.0.0 beta1 (2 CPE variants)
rubyonrails/rails < 5.2.2.1
Published Mar 27, 2019
Tracked Since Feb 18, 2026