Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-6508

Опубликовано: 09 фев. 2018
Источник: nvd
CVSS3: 8
CVSS2: 6
EPSS Низкий

Описание

Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:puppet:puppet_enterprise:*:*:*:*:*:*:*:*
Версия от 2017.3.0 (включая) до 2017.3.2 (включая)

EPSS

Процентиль: 75%
0.00905
Низкий

8 High

CVSS3

6 Medium

CVSS2

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 8
ubuntu
почти 8 лет назад

Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.

CVSS3: 9
redhat
около 8 лет назад

Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.

CVSS3: 8
debian
почти 8 лет назад

Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remot ...

CVSS3: 8
github
больше 3 лет назад

Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.

EPSS

Процентиль: 75%
0.00905
Низкий

8 High

CVSS3

6 Medium

CVSS2

Дефекты

CWE-134