cbcvebase.
CVE-2015-7331
published 2017-01-30

CVE-2015-7331: The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.

medium6.6CVSS 3.0
AVNACHPRHUINSCCLIHAN
The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.

Affected

2 ranges
VendorProductVersion rangeFixed in
debianpuppet
puppetlabsmcollective-puppet-agent<= 1.11.0