Junglewise Threat Intelligence

CVE-2016-1241: PYSEC-2016-40 - Tryton 3.x before 3.2.17, 3.4.x before 3.4.14, 3.6.x before 3.6.12, 3.8.x before 3.8.8, and 4.x before 4.0.4 allow remote authenticated user

CVE-2016-1241 · Severity: low · CVSS 3 · Published 2016-09-07

Technologies: tryton (PyPI), trytond (PyPI). Vendors: PyPI.

Executive brief

Tryton 3.x before 3.2.17, 3.4.x before 3.4.14, 3.6.x before 3.6.12, 3.8.x before 3.8.8, and 4.x before 4.0.4 allow remote authenticated users to discover user password hashes via unspecified vectors.

Affected products

  • PyPI tryton
  • PyPI trytond

Related threats