CVE-2017-17405 | Ruby up to 2.2.7/2.3.4/2.4.1 Net::FTP Argument os command injection (RHSA-2018:0378 / EDB-43381)
A vulnerability was found in Ruby up to 2.2.7/2.3.4/2.4.1. It has been rated as critical. This issue affects some unknown processing of the component Net::FTP. This manipulation with the input | as part of Argument causes os command injection.
The identification of this vulnerability is CVE-2017-17405. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Upgrading the affected component is advised.