Описание
The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 exposes controller methods even when an @expose decoration is not used, which has unspecified impact and attack vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 2.0.3-2 |
| hardy | DNE | |
| karmic | not-affected | 2.0.3-1 |
| lucid | not-affected | 2.0.3-1 |
| maverick | not-affected | 2.0.3-2 |
| upstream | released | 2.0.2 |
Показывать по
10
Ссылки на источники
7.5 High
CVSS2
Связанные уязвимости
nvd
около 15 лет назад
The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 exposes controller methods even when an @expose decoration is not used, which has unspecified impact and attack vectors.
debian
около 15 лет назад
The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 expos ...
github
больше 3 лет назад
The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 exposes controller methods even when an @expose decoration is not used, which has unspecified impact and attack vectors.
7.5 High
CVSS2