ID:3043 - Exploit for Improper Certificate Validation in Django - CVE-2020-13254

 
Main Vulnerability Database Exploits ID:3043 - Exploit for Improper Certificate Validation in Django - CVE-2020-13254

ID:3043 - Exploit for Improper Certificate Validation in Django - CVE-2020-13254

Published: June 19, 2020


Vulnerability identifier: #VU28954
Vulnerability risk: Medium
CVE-ID: CVE-2020-13254
CWE-ID: CWE-295
Exploitation vector: Remote access
Vulnerable software:
Django

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to gain access to sensitive information on the system

The vulnerability exists when a memcached backend does not perform key validation. A remote attacker can gain access to sensitive information on the target system.


Remediation

Install updates from vendor's website.