Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-26215

Опубликовано: 18 нояб. 2020
Источник: nvd
CVSS3: 4.4
CVSS3: 6.1
CVSS2: 5.8
EPSS Низкий

Описание

Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected, however, these maliciously crafted links can only be reasonably made for known notebook server hosts. A link to your notebook server may appear safe, but ultimately redirect to a spoofed server on the public internet. The issue is patched in version 6.1.5.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jupyter:notebook:*:*:*:*:*:*:*:*
Версия до 6.1.5 (исключая)
Конфигурация 2
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00571
Низкий

4.4 Medium

CVSS3

6.1 Medium

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-601
CWE-601

Связанные уязвимости

CVSS3: 4.4
ubuntu
около 5 лет назад

Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected, however, these maliciously crafted links can only be reasonably made for known notebook server hosts. A link to your notebook server may appear safe, but ultimately redirect to a spoofed server on the public internet. The issue is patched in version 6.1.5.

CVSS3: 4.4
debian
около 5 лет назад

Jupyter Notebook before version 6.1.5 has an Open redirect vulnerabili ...

suse-cvrf
около 5 лет назад

Security update for python-jupyter_notebook

suse-cvrf
около 5 лет назад

Security update for python-notebook

CVSS3: 4.4
github
около 5 лет назад

Open redirect in Jupyter Notebook

EPSS

Процентиль: 68%
0.00571
Низкий

4.4 Medium

CVSS3

6.1 Medium

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-601
CWE-601