Skip to content

H3-2022-0027

Unauthenticated Access to Jupyter

Category SECURITY_MISCONFIGURATION
Base Score 9.8

Description

The Jupyter application is accessible without any authentication.

Impact

An unauthenticated attacker can abuse access to a Jupyter notebook to execute remote code on the hosting server and completely compromise the host and all information stored on it.

References