Salt (aka SaltStack) 0.15.0 up to and including 0.17.0 allows remote authenticated users who are using external authentication or client ACL to execute restricted routines by embedding the routine in another routine.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
saltstack salt 0.15.0 |
||
saltstack salt 0.15.1 |
||
saltstack salt 0.17.0 |
||
saltstack salt 0.16.0 |
||
saltstack salt 0.16.3 |
||
saltstack salt 0.16.2 |
||
saltstack salt 0.16.4 |