Weakness Name | Source | |
---|---|---|
Improper Link Resolution Before File Access ('Link Following') The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 2.1 | AV:L/AC:L/Au:N/C:N/I:P/A:N | [email protected] |
Puppetlabs>>Puppet >> Version From (including) 3.0.0 To (including) 3.3.2
Puppetlabs>>Puppet >> Version From (including) 3.4.0 To (excluding) 3.4.1
Puppet>>Puppet_enterprise >> Version From (including) 2.0.0 To (excluding) 2.8.4
Puppet>>Puppet_enterprise >> Version From (including) 3.1 To (excluding) 3.1.1
Debian>>Debian_linux >> Version 6.0
Debian>>Debian_linux >> Version 7.0
Debian>>Debian_linux >> Version 8.0
Canonical>>Ubuntu_linux >> Version 12.04
Canonical>>Ubuntu_linux >> Version 12.10
Canonical>>Ubuntu_linux >> Version 13.04
Canonical>>Ubuntu_linux >> Version 13.10