A privilege escalation allowing remote code execution was discovered in the orchestration service.
References
Link | Resource |
---|---|
https://www.puppet.com/security/cve/cve-2023-2530-remote-code-execution-orchestrator | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
14 Jun 2023, 18:31
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:puppet:puppet_enterprise:2023.1.0:*:*:*:*:*:*:* cpe:2.3:a:puppet:puppet_enterprise:*:*:*:*:*:*:*:* cpe:2.3:a:puppet:puppet_enterprise:2023.0:*:*:*:*:*:*:* |
|
References | (MISC) https://www.puppet.com/security/cve/cve-2023-2530-remote-code-execution-orchestrator - Vendor Advisory | |
First Time |
Puppet
Puppet puppet Enterprise |
07 Jun 2023, 20:24
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-06-07 20:15
Updated : 2024-02-28 20:13
NVD link : CVE-2023-2530
Mitre link : CVE-2023-2530
CVE.ORG link : CVE-2023-2530
JSON object : View
Products Affected
puppet
- puppet_enterprise
CWE