Vulnerability Details CVE-2015-1029
The puppetlabs-stdlib module 2.1 through 3.0 and 4.1.0 through 4.5.x before 4.5.1 for Puppet 2.8.8 and earlier allows remote authenticated users to gain privileges or obtain sensitive information by prepopulating the fact cache.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.9%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2015-1029
-
cpe:2.3:a:puppet:puppet_enterprise:-
-
cpe:2.3:a:puppet:puppet_enterprise:1.0
-
cpe:2.3:a:puppet:puppet_enterprise:1.1
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.0
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.1
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.2
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.3
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.4
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.5
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.6
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.7
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.6.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.6.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.4
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.5
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.6
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.7
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.8
-
cpe:2.3:a:puppet:stdlib:2.1.0
-
cpe:2.3:a:puppet:stdlib:2.1.1
-
cpe:2.3:a:puppet:stdlib:2.1.2
-
cpe:2.3:a:puppet:stdlib:2.1.3
-
cpe:2.3:a:puppet:stdlib:2.2.0
-
cpe:2.3:a:puppet:stdlib:2.2.1
-
cpe:2.3:a:puppet:stdlib:2.3.0
-
cpe:2.3:a:puppet:stdlib:2.3.1
-
cpe:2.3:a:puppet:stdlib:2.3.2
-
cpe:2.3:a:puppet:stdlib:2.3.3
-
cpe:2.3:a:puppet:stdlib:2.4.0
-
cpe:2.3:a:puppet:stdlib:2.5.0
-
cpe:2.3:a:puppet:stdlib:3.0.0
-
cpe:2.3:a:puppet:stdlib:4.1.0
-
cpe:2.3:a:puppet:stdlib:4.2.0
-
cpe:2.3:a:puppet:stdlib:4.2.1
-
cpe:2.3:a:puppet:stdlib:4.2.2
-
cpe:2.3:a:puppet:stdlib:4.3.0
-
cpe:2.3:a:puppet:stdlib:4.3.1
-
cpe:2.3:a:puppet:stdlib:4.3.2
-
cpe:2.3:a:puppet:stdlib:4.4.0
-
cpe:2.3:a:puppet:stdlib:4.5.0