5.8
CVSSv2

CVE-2013-4955

Published: 20/08/2013 Updated: 10/07/2019
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Open redirect vulnerability in the login page in Puppet Enterprise prior to 3.0.1 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the service parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

puppet puppet enterprise

puppet puppet enterprise 2.8.3

puppet puppet enterprise 2.8.2

puppet puppet enterprise 2.8.1

puppet puppet enterprise 2.8.0

puppet puppet enterprise 2.5.1

puppet puppet enterprise 2.5.2