Lucene search

K
osvGoogleOSV:PYSEC-2017-35
HistoryAug 23, 2017 - 2:29 p.m.

PYSEC-2017-35

2017-08-2314:29:00
Google
osv.dev
12

EPSS

0.005

Percentile

77.3%

Directory traversal vulnerability in minion id validation in SaltStack Salt before 2016.11.7 and 2017.7.x before 2017.7.1 allows remote minions with incorrect credentials to authenticate to a master via a crafted minion ID.