[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:111433
Django is a high-level Python Web framework that encourages rapid development and a clean, pragmatic design. It focuses on automating as much as possible and adhering to the DRY principle.

oval:org.secpod.oval:def:111440
Django is a high-level Python Web framework that encourages rapid development and a clean, pragmatic design. It focuses on automating as much as possible and adhering to the DRY principle.

oval:org.secpod.oval:def:703286
python-django: High-level Python web development framework Django could be made to set arbitrary cookies.

oval:org.secpod.oval:def:602628
Sergey Bobrov discovered that cookie parsing in Django and Google Analytics interacted such a way that an attacker could set arbitrary cookies. This allows other malicious web sites to bypass the Cross-Site Request Forgery protections built into Django.

oval:org.secpod.oval:def:51641
python-django: High-level Python web development framework Django could be made to set arbitrary cookies.

CPE    9
cpe:/a:djangoproject:django:1.9.2
cpe:/a:djangoproject:django:1.9.1
cpe:/a:djangoproject:django:1.9.8
cpe:/a:djangoproject:django:1.9.9
...
CWE    1
CWE-254
*CVE
CVE-2016-7401

© SecPod Technologies