Количество 8
Количество 8
BDU:2016-00527
Уязвимость программной платформы для веб-приложений Django, позволяющая нарушителю обойти существующие ограничения доступа
CVE-2016-2048
Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission.
CVE-2016-2048
Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission.
CVE-2016-2048
Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission.
CVE-2016-2048
Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, all ...
GHSA-46x4-9jmv-jc8p
Django Access Restrictions Bypass
openSUSE-SU-2018:0826-1
Security update for python-Django
openSUSE-SU-2018:0824-1
Security update for python3-Django
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2016-00527 Уязвимость программной платформы для веб-приложений Django, позволяющая нарушителю обойти существующие ограничения доступа | CVSS2: 6 | 0% Низкий | почти 10 лет назад | |
CVE-2016-2048 Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission. | CVSS3: 5.5 | 0% Низкий | почти 10 лет назад | |
CVE-2016-2048 Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission. | CVSS2: 3.5 | 0% Низкий | около 10 лет назад | |
CVE-2016-2048 Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenticated users to bypass intended access restrictions and create ModelAdmin objects via the "Save as New" option when editing objects and leveraging the "change" permission. | CVSS3: 5.5 | 0% Низкий | почти 10 лет назад | |
CVE-2016-2048 Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, all ... | CVSS3: 5.5 | 0% Низкий | почти 10 лет назад | |
GHSA-46x4-9jmv-jc8p Django Access Restrictions Bypass | CVSS3: 5.5 | 0% Низкий | больше 3 лет назад | |
openSUSE-SU-2018:0826-1 Security update for python-Django | почти 8 лет назад | |||
openSUSE-SU-2018:0824-1 Security update for python3-Django | почти 8 лет назад |
Уязвимостей на страницу