CVE-2013-4965 PUBLISHED CVSS 5 MEDIUM

Puppet Enterprise before 3.1.0 does not properly restrict the number of authentication attempts by a console account, which makes it easier for remote attackers to bypass intended access restrictions via a brute-force attack.

EPSS 0.72% · 72.4th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.72%
72.4th percentile

Affected Products

VendorProductVersions
n/an/an/a
puppetpuppet_enterprise0, 3.0.0

Timeline

References

Open in Interactive Console →