← Back to CVE List

CVE-2016-9599

Published: 2018-04-24T01:29Z
Last Modified: 2024-11-21T03:01Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
puppet-tripleo before versions 5.5.0, 6.2.0 is vulnerable to an access-control flaw in the IPtables rules management, which allowed the creation of TCP/UDP rules with empty port values. If SSL is enabled, a malicious user could use these open ports to gain access to unauthorized resources. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt