← Back to CVE List

CVE-2017-2290

Published: 2017-03-03T15:59Z
Last Modified: 2024-11-21T03:23Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
On Windows installations of the mcollective-puppet-agent plugin, version 1.12.0, a non-administrator user can create an executable that will be executed with administrator privileges on the next "mco puppet" run. Puppet Enterprise users are not affected. This is resolved in mcollective-puppet-agent 1.12.1. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt