[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Django Python web framework - (bulletinjul2018)

ID: oval:org.secpod.oval:def:2102503Date: (C)2019-12-31   (M)2022-10-10
Class: PATCHFamily: unix




Django 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3 use a hardcoded password for a temporary database user created when running tests with an Oracle database, which makes it easier for remote attackers to obtain access to the database server by leveraging failure to manually specify a password in the database settings TEST dictionary.

Platform:
Sun Solaris 11
Product:
entire
Reference:
bulletinjul2018
CVE-2016-9013
CVE    1
CVE-2016-9013
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies