OpenExpert version 0.5.17 suffers from a cross site scripting vulnerability.
Monthly Archives: January 2017
OpenExpert 0.5.17 SQL Injection
OpenExpert version 0.5.17 suffers from a remote SQL injection vulnerability.
python-crypto-2.0.1-6.el5
A heap-buffer overflow vulnerability was discovered in pycrypto leading to arbitrary code execution. All users of pycrypto’s AES module that allow the mode of operation to be specified by an attacker, check for ECB explicitly and create the objects without specifying an IV are vulnerable to this issue.
This is CVE-2013-7459.
python-crypto-2.6.1-13.el7
A heap-buffer overflow vulnerability was discovered in pycrypto leading to arbitrary code execution. All users of pycrypto’s AES module that allow the mode of operation to be specified by an attacker, check for ECB explicitly and create the objects without specifying an IV are vulnerable to this issue.
This is CVE-2013-7459.
python-crypto-2.6.1-13.fc25
A heap-buffer overflow vulnerability was discovered in pycrypto leading to arbitrary code execution. All users of pycrypto’s AES module that allow the mode of operation to be specified by an attacker, check for ECB explicitly and create the objects without specifying an IV are vulnerable to this issue.
This is CVE-2013-7459.