Cobbler
pypi: cobbler
Source repositories
CVEs (22)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2009-5021 | 0.00 | — | 0.01 | Dec 9, 2010 | Cobbler before 1.6.1 does not properly determine whether an installation has the default password, which makes it easier for attackers to obtain access by using this password. | |||
| CVE-2008-6954 | 0.00 | — | 0.02 | Aug 12, 2009 | The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules. |
- CVE-2009-5021Dec 9, 2010risk 0.00cvss —epss 0.01
Cobbler before 1.6.1 does not properly determine whether an installation has the default password, which makes it easier for attackers to obtain access by using this password.
- CVE-2008-6954Aug 12, 2009risk 0.00cvss —epss 0.02
The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules.
Page 2 of 2