Oval Definition:oval:org.opensuse.security:def:20177178
Revision Date:2018-05-02Version:1
Title:CVE-2017-7178
Description:

CSRF was discovered in the web UI in Deluge before 1.3.14. The exploitation methodology involves (1) hosting a crafted plugin that executes an arbitrary program from its __init__.py file and (2) causing the victim to download, install, and enable this plugin.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7178
Platform(s):openSUSE Leap 42.2
Product(s):
Definition Synopsis
  • openSUSE Leap 42.2 is installed
  • AND Package Information
  • deluge-1.3.15-3.3.1 is installed
  • AND deluge is signed with openSUSE key
  • OR
  • deluge-lang-1.3.15-3.3.1 is installed
  • AND deluge-lang is signed with openSUSE key
  • BACK