Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-0222

Опубликовано: 16 янв. 2015
Источник: debian
EPSS Низкий

Описание

ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_hidden_initial is set to True, allows remote attackers to cause a denial of service by submitting duplicate values, which triggers a large number of SQL queries.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-djangofixed1.7.1-1.1package
python-djangonot-affectedwheezypackage
python-djangonot-affectedsqueezepackage

Примечания

  • https://www.djangoproject.com/weblog/2015/jan/13/security/

EPSS

Процентиль: 89%
0.04573
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_hidden_initial is set to True, allows remote attackers to cause a denial of service by submitting duplicate values, which triggers a large number of SQL queries.

redhat
больше 10 лет назад

ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_hidden_initial is set to True, allows remote attackers to cause a denial of service by submitting duplicate values, which triggers a large number of SQL queries.

nvd
больше 10 лет назад

ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_hidden_initial is set to True, allows remote attackers to cause a denial of service by submitting duplicate values, which triggers a large number of SQL queries.

CVSS3: 7.5
github
около 3 лет назад

Django database denial-of-service with ModelMultipleChoiceField

EPSS

Процентиль: 89%
0.04573
Низкий