Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Beaker before 1.6.4, when using PyCrypto to encrypt sessions, uses AES in ECB cipher mode, which might allow remote attackers to obtain portions of sensitive session data via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Python Beaker Library 加密会话信息泄露漏洞
Vulnerability Description
Python Beaker Library 1.6.4之前版本中存在漏洞,可被恶意攻击者利用泄露某些敏感信息。该漏洞源于加密会话使用PyCrypto时存在错误。当使用弱加密模式时,攻击者可利用该漏洞导致某些会话数据泄露。
CVSS Information
N/A
Vulnerability Type
N/A