cbcvebase.
CVE-2013-4965
published 2013-10-25

CVE-2013-4965: Puppet Enterprise before 3.1.0 does not properly restrict the number of authentication attempts by a console account, which makes it easier for remote…

medium5CVSS 3.1
AVNACLAuNCNIPAN
Puppet Enterprise before 3.1.0 does not properly restrict the number of authentication attempts by a console account, which makes it easier for remote attackers to bypass intended access restrictions via a brute-force attack.

Affected

3 ranges
VendorProductVersion rangeFixed in
debianpuppet
puppetpuppet_enterprise<= 3.0.1
puppetpuppet_enterprise