Django是Django软件基金会的一套基于Python语言的开源Web应用框架。该框架包括面向对象的映射器、视图系统、模板系统等。 Django的utils/formats.py文件中的‘get_format’函数存在安全漏洞。远程攻击者可借助代替日期/时间格式设置的设置键,利用该漏洞获取敏感的应用程序信息。以下版本受到影响:Django 1.7.11之前1.7.x版本,1.8.7之前1.8.x版本,1.9rc2之前1.9.x版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-3276 | OpenLDAP 加密问题漏洞 | |
| CVE-2015-1342 | LXCFS 安全漏洞 | |
| CVE-2015-1344 | LXCFS 安全漏洞 | |
| CVE-2015-3628 | 多款F5产品安全漏洞 | |
| CVE-2015-4334 | Blue Coat Systems ProxySG SGOS 安全漏洞 | |
| CVE-2015-5006 | IBM Java SDK 信息泄露漏洞 | |
| CVE-2015-5309 | PuTTY 整数溢出漏洞 | |
| CVE-2015-7348 | zTree 跨站脚本漏洞 | |
| CVE-2015-8084 | 多款Huawei产品拒绝服务漏洞 | |
| CVE-2015-8124 | Sensio Labs Symfony 会话固定漏洞 | |
| CVE-2015-8125 | Sensio Labs Symfony 安全漏洞 | |
| CVE-2015-8131 | Elasticsearch Kibana 跨站请求伪造漏洞 | |
| CVE-2015-8482 | Blue Coat Systems Unified Agent 安全漏洞 | |
| CVE-2015-5273 | Automatic Bug Reporting Tool 后置链接漏洞 | |
| CVE-2015-5287 | Red Hat Automatic Bug Reporting Tool 安全漏洞 | |
| CVE-2015-5302 | libreport 信息泄露漏洞 |
No comments yet