5
CVSSv2

CVE-2013-4971

Published: 09/03/2014 Updated: 10/07/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Puppet Enterprise prior to 3.2.0 does not properly restrict access to node endpoints in the console, which allows remote malicious users to obtain sensitive information via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

puppet puppet enterprise 3.0.1

puppet puppet enterprise 3.1.0

puppet puppet enterprise

puppet puppet enterprise 3.0.0