CVE-2015-1842
CVE-2015-1842
The puppet manifests in the Red Hat openstack-puppet-modules package before 2014.2.13-2 uses a default password of CHANGEME for the pcsd daemon, which allows remote attackers to execute arbitrary shell commands via unspecified vectors.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://rhn.redhat.com/errata/RHSA-2015-0789.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0791.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0830.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0831.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0832.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=1201875http://www.securityfocus.com/bid/74049