mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-29 16:29:28 +02:00
707 B
707 B
CVE-2013-4346
Description
The Server.verify_request function in SimpleGeo python-oauth2 does not check the nonce, which allows remote attackers to perform replay attacks via a signed URL.
POC
Reference
- https://github.com/simplegeo/python-oauth2/issues/129
- https://github.com/simplegeo/python-oauth2/issues/129
Github
No PoCs found on GitHub currently.