Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v3fx-f8x7-f9vf

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

EPSS

Процентиль: 83%
0.01957
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 6.1
redhat
больше 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 9.8
nvd
почти 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

CVSS3: 9.8
debian
почти 9 лет назад

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise ...

EPSS

Процентиль: 83%
0.01957
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284