Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-0305

Опубликовано: 02 мая 2013
Источник: debian
EPSS Низкий

Описание

The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release candidate 2 does not check permissions for the history view, which allows remote authenticated administrators to obtain sensitive object history information.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-djangofixed1.4.4-1package

Примечания

  • https://www.djangoproject.com/weblog/2013/feb/19/security/

EPSS

Процентиль: 44%
0.00209
Низкий

Связанные уязвимости

ubuntu
около 12 лет назад

The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release candidate 2 does not check permissions for the history view, which allows remote authenticated administrators to obtain sensitive object history information.

redhat
больше 12 лет назад

The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release candidate 2 does not check permissions for the history view, which allows remote authenticated administrators to obtain sensitive object history information.

nvd
около 12 лет назад

The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release candidate 2 does not check permissions for the history view, which allows remote authenticated administrators to obtain sensitive object history information.

CVSS3: 4.3
github
около 3 лет назад

Django Data leakage via admin history log

EPSS

Процентиль: 44%
0.00209
Низкий