CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
57.3%
Cross-site request forgery in the REST API in IPython 2 and 3.
Vendor | Product | Version | CPE |
---|---|---|---|
ipython | ipython | 2.0.0 | cpe:2.3:a:ipython:ipython:2.0.0:*:*:*:*:*:*:* |
ipython | ipython | 2.1.0 | cpe:2.3:a:ipython:ipython:2.1.0:*:*:*:*:*:*:* |
ipython | ipython | 2.2.0 | cpe:2.3:a:ipython:ipython:2.2.0:*:*:*:*:*:*:* |
ipython | ipython | 2.3.0 | cpe:2.3:a:ipython:ipython:2.3.0:*:*:*:*:*:*:* |
ipython | ipython | 2.3.1 | cpe:2.3:a:ipython:ipython:2.3.1:*:*:*:*:*:*:* |
ipython | ipython | 2.4.0 | cpe:2.3:a:ipython:ipython:2.4.0:*:*:*:*:*:*:* |
ipython | ipython | 2.4.1 | cpe:2.3:a:ipython:ipython:2.4.1:*:*:*:*:*:*:* |
ipython | ipython | 3.0.0 | cpe:2.3:a:ipython:ipython:3.0.0:*:*:*:*:*:*:* |
ipython | ipython | 3.1.0 | cpe:2.3:a:ipython:ipython:3.1.0:*:*:*:*:*:*:* |
ipython | ipython | 3.2.0 | cpe:2.3:a:ipython:ipython:3.2.0:*:*:*:*:*:*:* |
lists.fedoraproject.org/pipermail/package-announce/2015-July/162671.html
lists.fedoraproject.org/pipermail/package-announce/2015-July/162936.html
www.openwall.com/lists/oss-security/2015/07/21/3
bugzilla.redhat.com/show_bug.cgi?id=1243842
github.com/ipython/ipython/commit/1415a9710407e7c14900531813c15ba6165f0816
github.com/ipython/ipython/commit/a05fe052a18810e92d9be8c1185952c13fe4e5b0
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
57.3%