[Forgot Password]
Login  Register Subscribe

23631

 
 

115083

 
 

97147

 
 

909

 
 

78730

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2012-3865

Date: (C)2012-08-06   (M)2016-07-21 


Directory traversal vulnerability in lib/puppet/reports/store.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, when Delete is enabled in auth.conf, allows remote authenticated users to delete arbitrary files on the puppet master server via a .. (dot dot) in a node name.

CVSS Score: 3.5Access Vector: NETWORK
Exploit Score: 6.8Access Complexity: MEDIUM
Impact Score: 2.9Authentication: SINGLE_INSTANCE
 Confidentiality: NONE
 Integrity: NONE
 Availability: PARTIAL





Reference:
SECUNIA-50014
DSA-2511
SUSE-SU-2012:0983
USN-1506-1
http://puppetlabs.com/security/cve/cve-2012-3865/
https://bugzilla.redhat.com/show_bug.cgi?id=839131
https://github.com/puppetlabs/puppet/commit/554eefc55f57ed2b76e5ee04d8f194d36f6ee67f
https://github.com/puppetlabs/puppet/commit/d80478208d79a3e6d6cb1fbc525e24817fe8c4c6
openSUSE-SU-2012:0891

CPE    34
cpe:/a:puppetlabs:puppet:2.7.14
cpe:/a:puppetlabs:puppet:2.7.13
cpe:/a:puppetlabs:puppet:2.7.16
cpe:/a:puppetlabs:puppet:2.7.17
...
CWE    1
CWE-22
OVAL    5
oval:org.secpod.oval:def:104775
oval:org.secpod.oval:def:104016
oval:org.secpod.oval:def:600847
oval:org.secpod.oval:def:700936
...

© 2013 SecPod Technologies