Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6905
HistoryJul 03, 2018 - 6:02 a.m.

Arbitrary Code Execution

2018-07-0306:02:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.001

Percentile

32.4%

ansible is vulnerable to arbitrary code execution. The application loads certain host/group variables from the current working directory when ad-hoc command line commands are run and a playbook or playbook base directory is not specified. This can allow a malicious user to inject and execute arbitrary code.