Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://xforce.iss.net/xforce/xfdb/61729
http://www.vuxml.org/freebsd/3ff95dd3-c291-11df-b0dc-00215c6a37bb.html
Insight
The following packages are affected:
py23-django
py24-django
py25-django
py26-django
py30-django
py31-django
py23-django-devel
py24-django-devel
py25-django-devel
py26-django-devel
py30-django-devel
py31-django-devel
CVE-2010-3082
Cross-site scripting (XSS) vulnerability in Django 1.2.x before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via a csrfmiddlewaretoken (aka csrf_token) cookie.
Severity
Classification
-
CVE CVE-2010-3082 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:P/A:N
Related Vulnerabilities