Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pmakowski

#42417of 53,624
6.3Total CVSS
Vulnerabilities · 1
PT-2014-2778
6.3
2013-10-25
Python · Python-Oauth2 · CVE-2013-4347
**Name of the Vulnerable Software and Affected Versions** python-oauth2 (affected versions not specified) **Description** The issue concerns the use of weak random numbers by the `make nonce`, `generate nonce`, and `generate verifier` functions in python-oauth2, making it easier for remote attackers to guess the nonce via a brute force attack. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.