Vulnerability Details CVE-2018-11752
Previous releases of the Puppet cisco_ios module output SSH session debug information including login credentials to a world readable file on every run. These issues have been resolved in the 0.4.0 release.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.2%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2018-11752
-
cpe:2.3:a:puppet:cisco_ios:0.1.0
-
cpe:2.3:a:puppet:cisco_ios:0.2.0
-
cpe:2.3:a:puppet:cisco_ios:0.3.0