PT-2017-6869 · Project Jupyter+3 · Python+3

·

CVE-2015-5607

·

Publicado

2015-08-03

·

Atualizado

2023-03-15

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IPython versions 2.0 through 2.4.0 IPython versions 3.0 through 3.2.2
Description Cross-site request forgery in the REST API is possible. IPython is a command shell, and this issue affects its REST API.
Recommendations For IPython versions 2.0 through 2.4.0, update to version 2.4.1 to resolve the issue. For IPython versions 3.0 through 3.2.2, update to version 3.2.3 to resolve the issue.

Exploit

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2015-1721
CVE-2015-5607
GHSA-7FC2-RM35-2PP7
MGASA-2015-0300
PYSEC-2017-47
USN-5953-1

Produtos afetados

Alt Linux
Python
Linuxmint
Ubuntu