Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-11747

Опубликовано: 21 мар. 2019
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Previously, Puppet Discovery was shipped with a default generated TLS certificate in the nginx container. In version 1.4.0, a unique certificate will be generated on installation or the user will be able to provide their own TLS certificate for ingress.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:puppet:discovery:*:*:*:*:*:*:*:*
Версия до 1.4.0 (исключая)

EPSS

Процентиль: 50%
0.00265
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

Previously, Puppet Discovery was shipped with a default generated TLS certificate in the nginx container. In version 1.4.0, a unique certificate will be generated on installation or the user will be able to provide their own TLS certificate for ingress.

EPSS

Процентиль: 50%
0.00265
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-295