Описание
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (session store consumption) via multiple requests with unique session keys.
Релиз | Статус | Примечание |
---|---|---|
devel | released | 1.7.9-1ubuntu1 |
esm-infra-legacy/trusty | not-affected | 1.6.1-2ubuntu0.9 |
precise | released | 1.3.1-4ubuntu1.17 |
trusty | released | 1.6.1-2ubuntu0.9 |
trusty/esm | not-affected | 1.6.1-2ubuntu0.9 |
upstream | released | 1.4.21,1.7.9,1.8.3 |
utopic | released | 1.6.6-1ubuntu2.3 |
vivid | released | 1.7.6-1ubuntu2.1 |
Показывать по
EPSS
7.8 High
CVSS2
Связанные уязвимости
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (session store consumption) via multiple requests with unique session keys.
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (session store consumption) via multiple requests with unique session keys.
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7 ...
Django Denial-of-service by filling session store
Уязвимость программной платформы для веб-приложений Django, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
7.8 High
CVSS2