ZeroHour

CVE-2016-2788

CVSS 3.0
9.8 critical
EPSS
2%p82
Published
()
Modified
Description

MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command.

Vendors
puppet
Products
marionette collective, puppet enterprise
Weakness
CWE-284
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.