mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-14 15:08:03 +02:00
18 lines
678 B
Markdown
18 lines
678 B
Markdown
### [CVE-2014-3429](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3429)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
IPython Notebook 0.12 through 1.x before 1.2 does not validate the origin of websocket requests, which allows remote attackers to execute arbitrary code by leveraging knowledge of the kernel id and a crafted page.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://github.com/ipython/ipython/pull/4845
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|