Vulnerabilities > Puppet > Puppet Enterprise

DATE CVE VULNERABILITY TITLE RISK
2020-03-11 CVE-2020-7943 Unspecified vulnerability in Puppet Enterprise and Puppet Server
Puppet Server and PuppetDB provide useful performance and debugging information via their metrics API endpoints.
network
low complexity
puppet
5.0
2020-02-27 CVE-2015-5686 Cross-Site Request Forgery (CSRF) vulnerability in Puppet Enterprise
Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks.
network
puppet CWE-352
6.8
2019-12-12 CVE-2019-10694 Use of Hard-coded Credentials vulnerability in Puppet Enterprise
The express install, which is the suggested way to install Puppet Enterprise, gives the user a URL at the end of the install to set the admin password.
network
low complexity
puppet CWE-798
7.5
2019-12-11 CVE-2013-4968 Cross-site Scripting vulnerability in Puppet Enterprise
Puppet Enterprise before 3.0.1 allows remote attackers to (1) conduct clickjacking attacks via unspecified vectors related to the console, and (2) conduct cross-site scripting (XSS) attacks via unspecified vectors related to "live management."
network
puppet CWE-79
4.3
2019-11-29 CVE-2015-1855 Improper Input Validation vulnerability in multiple products
verify_certificate_identity in the OpenSSL extension in Ruby before 2.0.0 patchlevel 645, 2.1.x before 2.1.6, and 2.2.x before 2.2.2 does not properly validate hostnames, which allows remote attackers to spoof servers via vectors related to (1) multiple wildcards, (1) wildcards in IDNA names, (3) case sensitivity, and (4) non-ASCII characters.
4.3
2018-08-24 CVE-2018-11749 Cleartext Transmission of Sensitive Information vulnerability in Puppet Enterprise
When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server.
network
low complexity
puppet CWE-319
5.0
2018-06-11 CVE-2018-6513 Untrusted Search Path vulnerability in Puppet and Puppet Enterprise
Puppet Enterprise 2016.4.x prior to 2016.4.12, Puppet Enterprise 2017.3.x prior to 2017.3.7, Puppet Enterprise 2018.1.x prior to 2018.1.1, Puppet Agent 1.10.x prior to 1.10.13, Puppet Agent 5.3.x prior to 5.3.7, and Puppet Agent 5.5.x prior to 5.5.2, were vulnerable to an attack where an unprivileged user on Windows agents could write custom facts that can escalate privileges on the next puppet run.
network
low complexity
puppet CWE-426
6.5
2018-06-11 CVE-2018-6512 Code Injection vulnerability in Puppet Pe-Razor-Server, Puppet Enterprise and Razor-Server
The previous version of Puppet Enterprise 2018.1 is vulnerable to unsafe code execution when upgrading pe-razor-server.
network
low complexity
puppet CWE-94
7.5
2018-05-08 CVE-2018-6511 Cross-site Scripting vulnerability in Puppet Enterprise
A cross-site scripting vulnerability in Puppet Enterprise Console of Puppet Enterprise allows a user to inject scripts into the Puppet Enterprise Console when using the Puppet Enterprise Console.
network
puppet CWE-79
3.5
2018-05-08 CVE-2018-6510 Cross-site Scripting vulnerability in Puppet Enterprise
A cross-site scripting vulnerability in Puppet Enterprise Console of Puppet Enterprise allows a user to inject scripts into the Puppet Enterprise Console when using the Orchestrator.
network
puppet CWE-79
3.5