646 B
646 B
CVE-2013-4346
Description
The Server.verify_request function in SimpleGeo python-oauth2 does not check the nonce, which allows remote attackers to perform replay attacks via a signed URL.
POC
Reference
Github
No PoCs found on GitHub currently.