Lucene search

K
redhatcveRedhat.comRH:CVE-2018-10874
HistoryApr 09, 2020 - 10:18 a.m.

CVE-2018-10874

2020-04-0910:18:06
redhat.com
access.redhat.com
18

EPSS

0.001

Percentile

32.4%

In ansible it was found that inventory variables are loaded from current working directory when running ad-hoc command which are under attacker’s control, allowing to run arbitrary code as a result.