
@kwast @lumatechdev erro gravíssimo 1. CVE-2013-1443 2. CVE-2019-6975 3. CVE-2021-33203 4. CVE-2022-28346 5. CVE-2016-7401
Post summary
The tweet merely lists several CVE identifiers without any additional context or actionable information.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
The cookie parsing code in Django before 1.8.15 and 1.9.x before 1.9.10, when used on a site with Google Analytics, allows remote attackers to bypass an intended CSRF protection mechanism by setting arbitrary cookies.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
AVAILABLE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
14 versions affected across 3 products

@kwast @lumatechdev erro gravíssimo 1. CVE-2013-1443 2. CVE-2019-6975 3. CVE-2021-33203 4. CVE-2022-28346 5. CVE-2016-7401
Post summary
The tweet merely lists several CVE identifiers without any additional context or actionable information.
15 of 15 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| OS | canonical | ubuntu_linux | 12.04 | - | - |
| OS | canonical | ubuntu_linux | 14.04 | - | - |
| OS | canonical | ubuntu_linux | 16.04 | - | - |
| OS | debian | debian_linux | 8.0 | - | - |
| App | djangoproject | django | - | - | - |
| App | djangoproject | django | 1.9.0 | - | - |
| App | djangoproject | django | 1.9.1 | - | - |
| App | djangoproject | django | 1.9.2 | - | - |
| App | djangoproject | django | 1.9.3 | - | - |
| App | djangoproject | django | 1.9.4 | - | - |
| App | djangoproject | django | 1.9.5 | - | - |
| App | djangoproject | django | 1.9.6 | - | - |
| App | djangoproject | django | 1.9.7 | - | - |
| App | djangoproject | django | 1.9.8 | - | - |
| App | djangoproject | django | 1.9.9 | - | - |