CVE-2013-4955 Information

Description

Open redirect vulnerability in the login page in Puppet Enterprise before 3.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the service parameter.

Reference

http://puppetlabs.com/security/cve/cve-2013-4955/

Share on: