Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-1654
HistoryMar 20, 2013 - 4:55 p.m.

Code injection

2013-03-2016:55:00
PRIOn knowledge base
www.prio-n.com
4

7 High

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.4%

Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, and Puppet Enterprise 2.7.x before 2.7.2, does not properly negotiate the SSL protocol between client and master, which allows remote attackers to conduct SSLv2 downgrade attacks against SSLv3 sessions via unspecified vectors.