CVE-2013-4967
Publication date 20 August 2013
Last updated 24 July 2024
Ubuntu priority
Puppet Enterprise before 3.0.1 allows remote attackers to obtain the database password via vectors related to how the password is "seeded as a console parameter," External Node Classifiers, and the lack of access control for /nodes.