Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-3428 | Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors. |
![]() |
GHSA-9pvx-fwwh-w289 | Puppet does not properly restrict access to node resources |
![]() |
USN-1365-1 | Puppet vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T21:58:24.966Z
Reserved: 2011-01-20T00:00:00
Link: CVE-2011-0528

No data.

Status : Deferred
Published: 2014-02-17T16:55:04.787
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-0528

No data.

No data.