CVE-2013-1655

EPSS 0.54%

Puppet Improper Input Validation vulnerability

Published: 10/24/2017Modified: 4/28/2026

Description

Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, when running Ruby 1.9.3 or later, allows remote attackers to execute arbitrary code via vectors related to "serialized attributes."

Affected packages (2)

References (11)