Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-25636

Опубликовано: 05 окт. 2020
Источник: nvd
CVSS3: 6.6
CVSS3: 7.1
CVSS2: 3.6
EPSS Низкий

Описание

A flaw was found in Ansible Base when using the aws_ssm connection plugin as there is no namespace separation for file transfers. Files are written directly to the root bucket, making possible to have collisions when running multiple ansible processes. This issue affects mainly the service availability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:ansible:2.10.1:rc2:*:*:*:*:*:*

EPSS

Процентиль: 33%
0.00129
Низкий

6.6 Medium

CVSS3

7.1 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-377
CWE-552

Связанные уязвимости

CVSS3: 6.6
ubuntu
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plugin as there is no namespace separation for file transfers. Files are written directly to the root bucket, making possible to have collisions when running multiple ansible processes. This issue affects mainly the service availability.

CVSS3: 6.6
redhat
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plugin as there is no namespace separation for file transfers. Files are written directly to the root bucket, making possible to have collisions when running multiple ansible processes. This issue affects mainly the service availability.

CVSS3: 6.6
debian
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plu ...

EPSS

Процентиль: 33%
0.00129
Низкий

6.6 Medium

CVSS3

7.1 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-377
CWE-552