Vulnerability Details CVE-2015-1029
The puppetlabs-stdlib module 2.1 through 3.0 and 4.1.0 through 4.5.x before 4.5.1 for Puppet 2.8.8 and earlier allows remote authenticated users to gain privileges or obtain sensitive information by prepopulating the fact cache.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.6%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2015-1029
-
cpe:2.3:a:puppet:puppet_enterprise:-
-
cpe:2.3:a:puppet:puppet_enterprise:1.0
-
cpe:2.3:a:puppet:puppet_enterprise:1.1
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.0
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.1
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.2
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.3
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.4
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.5
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.6
-
cpe:2.3:a:puppet:puppet_enterprise:1.2.7
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.0.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.5.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.6.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.6.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.7.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.0
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.1
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.2
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.3
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.4
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.5
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.6
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.7
-
cpe:2.3:a:puppet:puppet_enterprise:2.8.8
-
cpe:2.3:a:puppet:stdlib:2.1.0
-
cpe:2.3:a:puppet:stdlib:2.1.1
-
cpe:2.3:a:puppet:stdlib:2.1.2
-
cpe:2.3:a:puppet:stdlib:2.1.3
-
cpe:2.3:a:puppet:stdlib:2.2.0
-
cpe:2.3:a:puppet:stdlib:2.2.1
-
cpe:2.3:a:puppet:stdlib:2.3.0
-
cpe:2.3:a:puppet:stdlib:2.3.1
-
cpe:2.3:a:puppet:stdlib:2.3.2
-
cpe:2.3:a:puppet:stdlib:2.3.3
-
cpe:2.3:a:puppet:stdlib:2.4.0
-
cpe:2.3:a:puppet:stdlib:2.5.0
-
cpe:2.3:a:puppet:stdlib:3.0.0
-
cpe:2.3:a:puppet:stdlib:4.1.0
-
cpe:2.3:a:puppet:stdlib:4.2.0
-
cpe:2.3:a:puppet:stdlib:4.2.1
-
cpe:2.3:a:puppet:stdlib:4.2.2
-
cpe:2.3:a:puppet:stdlib:4.3.0
-
cpe:2.3:a:puppet:stdlib:4.3.1
-
cpe:2.3:a:puppet:stdlib:4.3.2
-
cpe:2.3:a:puppet:stdlib:4.4.0
-
cpe:2.3:a:puppet:stdlib:4.5.0