Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-2296

Опубликовано: 01 фев. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

In Puppet Enterprise 2017.1.x and 2017.2.1, using specially formatted strings with certain formatting characters as Classifier node group names or RBAC role display names causes errors, effectively causing a DOS to the service. This was resolved in Puppet Enterprise 2017.2.2.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:puppet:puppet_enterprise:2017.1.0:*:*:*:*:*:*:*
cpe:2.3:a:puppet:puppet_enterprise:2017.1.1:*:*:*:*:*:*:*
cpe:2.3:a:puppet:puppet_enterprise:2017.2.1:*:*:*:*:*:*:*

EPSS

Процентиль: 57%
0.00353
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.5
debian
около 8 лет назад

In Puppet Enterprise 2017.1.x and 2017.2.1, using specially formatted ...

CVSS3: 6.5
github
больше 3 лет назад

In Puppet Enterprise 2017.1.x and 2017.2.1, using specially formatted strings with certain formatting characters as Classifier node group names or RBAC role display names causes errors, effectively causing a DOS to the service. This was resolved in Puppet Enterprise 2017.2.2.

EPSS

Процентиль: 57%
0.00353
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-20