RubyGems is a package management framework for Ruby.
RubyGems is prone to remote code-execution vulnerability since YAML deserialization of gem specifications can bypass class white lists. An attacker can exploit this issue to execute arbitrary code within the context of the affected system.
RubyGems between 2.0.0 and 2.6.13
QID Detection Logic:
This authenticated QID matches the vulnerable Ruby Gem version by running gem -v.
Successful execution allows an attacker to execute arbitrary code on a targeted system.