Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Pmakowski

#42541de 53,633
6.3CVSS total
Vulnerabilidades · 1
PT-2014-2778
6.3
2013-10-25
Python · Python-Oauth2 · CVE-2013-4347
**Name of the Vulnerable Software and Affected Versions** python-oauth2 (affected versions not specified) **Description** The issue concerns the use of weak random numbers by the `make nonce`, `generate nonce`, and `generate verifier` functions in python-oauth2, making it easier for remote attackers to guess the nonce via a brute force attack. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.