Описание
Minion event bus authorization bypass. An attacker with access to a minion key can craft a message which may be able to execute a job on other minions (>= 3007.0).
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
salt | removed | package |
EPSS
Процентиль: 5%
0.00025
Низкий
Связанные уязвимости
CVSS3: 8.1
ubuntu
3 месяца назад
Minion event bus authorization bypass. An attacker with access to a minion key can craft a message which may be able to execute a job on other minions (>= 3007.0).
CVSS3: 8.1
nvd
3 месяца назад
Minion event bus authorization bypass. An attacker with access to a minion key can craft a message which may be able to execute a job on other minions (>= 3007.0).
CVSS3: 8.1
github
3 месяца назад
Salt has minion event bus authorization bypass vulnerability
EPSS
Процентиль: 5%
0.00025
Низкий