Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38399
HistoryDec 10, 2022 - 4:35 a.m.

Privilege Escalation

2022-12-1004:35:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
puppetdb
privilege escalation
input query validation
user tables
sql query

EPSS

0.001

Percentile

42.8%

puppetdb is vulnerable to privilege escalation. The vulnerability exists due to the lack of input query validation in the library, allowing an attacker to delete user tables via malicious sql query.