Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-2513

The password hasher in contrib/auth/hashers.py in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to enumerate users via a timing attack involving login requests.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.0%
CVSS Severity
CVSS v3 Score 3.1
CVSS v2 Score 2.6
References
Products affected by CVE-2016-2513


Contact Us

Shodan ® - All rights reserved