Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-26232

Опубликовано: 24 нояб. 2020
Источник: nvd
CVSS3: 4.1
CVSS3: 5.4
CVSS2: 5.5
EPSS Низкий

Описание

Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server could redirect the browser to a different website. All jupyter servers are technically affected, however, these maliciously crafted links can only be reasonably made for known jupyter server hosts. A link to your jupyter server may appear safe, but ultimately redirect to a spoofed server on the public internet.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jupyter:jupyter_server:*:*:*:*:*:*:*:*
Версия до 1.0.6 (исключая)

EPSS

Процентиль: 46%
0.00232
Низкий

4.1 Medium

CVSS3

5.4 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 4.1
ubuntu
около 5 лет назад

Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server could redirect the browser to a different website. All jupyter servers are technically affected, however, these maliciously crafted links can only be reasonably made for known jupyter server hosts. A link to your jupyter server may appear safe, but ultimately redirect to a spoofed server on the public internet.

CVSS3: 4.1
debian
около 5 лет назад

Jupyter Server before version 1.0.6 has an Open redirect vulnerability ...

CVSS3: 4.1
github
около 5 лет назад

Open redirect in Jupyter Server

EPSS

Процентиль: 46%
0.00232
Низкий

4.1 Medium

CVSS3

5.4 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-601