Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4761

Опубликовано: 20 авг. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.1

Описание

Unspecified vulnerability in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service. NOTE: this vulnerability can only be exploited utilizing unspecified "local file system access" to the Puppet Master.

РелизСтатусПримечание
devel

released

3.2.4-2ubuntu2
lucid

ignored

end of life
precise

released

2.7.11-1ubuntu2.4
quantal

released

2.7.18-1ubuntu1.3
raring

released

2.7.18-4ubuntu1.2
upstream

released

2.7.23,3.2.4

Показывать по

EPSS

Процентиль: 75%
0.01643
Низкий

5.1 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

Unspecified vulnerability in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service. NOTE: this vulnerability can only be exploited utilizing unspecified "local file system access" to the Puppet Master.

nvd
около 13 лет назад

Unspecified vulnerability in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service. NOTE: this vulnerability can only be exploited utilizing unspecified "local file system access" to the Puppet Master.

debian
около 13 лет назад

Unspecified vulnerability in Puppet 2.7.x before 2.7.23 and 3.2.x befo ...

github
почти 9 лет назад

Puppet allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service

suse-cvrf
около 12 лет назад

Security update for puppet

EPSS

Процентиль: 75%
0.01643
Низкий

5.1 Medium

CVSS2