Lucene search

K
osvGoogleOSV:GHSA-29J3-2446-5J4W
HistoryMay 24, 2022 - 5:33 p.m.

SaltStack Salt Improper Validation of eauth credentials and tokens in salt-netapi

2022-05-2417:33:18
Google
osv.dev
3

9.6 High

AI Score

Confidence

High

0.404 Medium

EPSS

Percentile

97.3%

In SaltStack the salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.

Rows per page:
1-10 of 1591

References