oval:org.mitre.oval:def:13659

Definition Id: oval:org.mitre.oval:def:13659
 
Oval ID: oval:org.mitre.oval:def:13659
Title: USN-1066-1 -- python-django vulnerabilities
Description: It was discovered that Django did not properly validate HTTP requests that contain an X-Requested-With header. An attacker could exploit this vulnerability to perform cross-site request forgery attacks. It was discovered that Django did not properly sanitize its input when performing file uploads, resulting in cross-site scripting vulnerabilities. With cross-site scripting vulnerabilities, if a user were tricked into viewing server output during a crafted server request, a remote attacker could exploit this to modify the contents, or steal confidential data, within the same domain
Family: unix Class: patch
Reference(s): USN-1066-1
CVE-2011-0696
CVE-2011-0697
Version: 5
Platform(s): Ubuntu 10.10
Ubuntu 9.10
Ubuntu 10.04
Product(s): python-django
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:13089
 
Oval ID: oval:org.mitre.oval:def:13089
Title: Ubuntu 10.04 is installed
Description: Ubuntu 10.04 is installed
Family: unix Class: inventory
Reference(s): cpe:/o:canonical:ubuntu_linux:10.04
Version: 5
Platform(s): Ubuntu 10.04
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:13659
Definition Id: oval:org.mitre.oval:def:13134
 
Oval ID: oval:org.mitre.oval:def:13134
Title: Ubuntu 10.10 is installed
Description: Ubuntu 10.10 is installed
Family: unix Class: inventory
Reference(s): cpe:/o:ubuntu:ubuntu_linux:10.10
Version: 3
Platform(s): Ubuntu 10.10
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:13659
Definition Id: oval:org.mitre.oval:def:13079
 
Oval ID: oval:org.mitre.oval:def:13079
Title: Ubuntu 9.10 is installed
Description: Ubuntu 9.10 is installed
Family: unix Class: inventory
Reference(s): cpe:/o:canonical:ubuntu_linux:9.10
Version: 5
Platform(s): Ubuntu 9.10
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:13659