Описание
Command Injection in puppet-facter
All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.
Пакеты
Наименование
puppet-facter
npm
Затронутые версииВерсия исправления
<= 0.0.2
Отсутствует
Связанные уязвимости
CVSS3: 7.4
nvd
около 3 лет назад
All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.