Candidate: CVE-2009-5015 PublicDate: 2010-11-06 00:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-5015 Description: The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 exposes controller methods even when an @expose decoration is not used, which has unspecified impact and attack vectors. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_turbogears2: upstream_turbogears2: released (2.0.2) dapper_turbogears2: DNE hardy_turbogears2: DNE karmic_turbogears2: not-affected (2.0.3-1) lucid_turbogears2: not-affected (2.0.3-1) maverick_turbogears2: not-affected (2.0.3-2) devel_turbogears2: not-affected (2.0.3-2)