Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-2788

Опубликовано: 13 фев. 2017
Источник: debian
EPSS Низкий

Описание

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mcollectivefixed2.12.0+dfsg-1package
mcollectiveno-dsajessiepackage
mcollectiveno-dsawheezypackage

Примечания

  • https://puppet.com/security/cve/cve-2016-2788

  • https://github.com/puppetlabs/marionette-collective/commit/4918a0f136aea04452b48a1ba29eb9aabcf5c97d

EPSS

Процентиль: 83%
0.01957
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 6.1
redhat
больше 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 9.8
nvd
почти 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 9.8
github
больше 3 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

EPSS

Процентиль: 83%
0.01957
Низкий