CVE-2015-7331: Puppetlabs Mcollective-Puppet-Agent
Medium severity, CVSS 6.6. EPSS: 1.2% chance of exploitation in the next 30 days.
The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.
Affected products
- Puppetlabs Mcollective-Puppet-Agent: up to and including 1.11.0
Published 2017-01-30. Last modified 2026-06-17.