Weakness Name | Source | |
---|---|---|
Improper Link Resolution Before File Access ('Link Following') The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 6.3 | AV:L/AC:M/Au:N/C:N/I:C/A:C | [email protected] |
Puppet>>Puppet >> Version 2.6.0
Puppet>>Puppet >> Version 2.6.1
Puppet>>Puppet >> Version 2.6.2
Puppet>>Puppet >> Version 2.6.3
Puppet>>Puppet >> Version 2.6.4
Puppet>>Puppet >> Version 2.6.5
Puppet>>Puppet >> Version 2.6.6
Puppet>>Puppet >> Version 2.6.7
Puppet>>Puppet >> Version 2.6.8
Puppet>>Puppet >> Version 2.6.9
Puppet>>Puppet >> Version 2.6.10
Puppet>>Puppet >> Version 2.7.2
Puppet>>Puppet >> Version 2.7.3
Puppet>>Puppet >> Version 2.7.4
Puppetlabs>>Puppet >> Version 2.7.0
Puppetlabs>>Puppet >> Version 2.7.1
Puppet>>Puppet >> Version 0.25.0
Puppet>>Puppet >> Version 0.25.1
Puppet>>Puppet >> Version 0.25.2
Puppet>>Puppet >> Version 0.25.3
Puppet>>Puppet >> Version 0.25.4
Puppet>>Puppet >> Version 0.25.5
Puppet>>Puppet >> Version 0.25.6