Vulnerability Database

315,293

Total vulnerabilities in the database

CVE-2013-4957

The dashboard report in Puppet Enterprise before 3.0.1 allows attackers to execute arbitrary YAML code via a crafted report-specific type.

  • Published: Oct 25, 2013
  • Updated: Nov 9, 2025
  • CVE: CVE-2013-4957
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs: