VYPR

Cobbler

by Cobbler Project

pypi: cobbler

Source repositories

CVEs (22)

  • CVE-2009-5021Dec 9, 2010
    risk 0.00cvss epss 0.01

    Cobbler before 1.6.1 does not properly determine whether an installation has the default password, which makes it easier for attackers to obtain access by using this password.

  • CVE-2008-6954Aug 12, 2009
    risk 0.00cvss epss 0.02

    The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules.

Page 2 of 2