Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gmmf-cc7v-f9hw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterprise API token. This issue is resolved in CD4PE 4.10.0

A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterprise API token. This issue is resolved in CD4PE 4.10.0

EPSS

Процентиль: 54%
0.00317
Низкий

8.1 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.1
nvd
около 4 лет назад

A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterprise API token. This issue is resolved in CD4PE 4.10.0

EPSS

Процентиль: 54%
0.00317
Низкий

8.1 High

CVSS3

Дефекты

CWE-732