Django CSRF Token HTML Injection Vulnerability
|
Bugtraq ID:
|
43116
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
CVE-2010-3082
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Sep 08 2010 12:00AM
|
|
Updated:
|
Oct 13 2010 09:29PM
|
|
Credit:
|
Jeff Balogh of Mozilla
|
|
Vulnerable:
|
Ubuntu Ubuntu Linux 10.10 powerpc
Ubuntu Ubuntu Linux 10.10 i386
Ubuntu Ubuntu Linux 10.10 amd64
Red Hat Fedora 14
Red Hat Fedora 13
Red Hat Fedora 12
Expinion.net Member Management System 4.0
Django Django development trunk
Django Django 1.2
|
|
|
|
Not Vulnerable:
|
Django Django 1.2.2
|
|