Total vulnerabilities in the database
Northern.tech CFEngine Enterprise before 3.21.1 allows a subset of authenticated users to leverage the Scheduled Reports feature to read arbitrary files and potentially discover credentials.
Software | From | Fixed in |
---|---|---|
northern.tech / cfengine | 3.6.0 | 3.21.1 |