Описание
A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Issue TrackingPatchVendor Advisory
- Vendor Advisory
- Vendor Advisory
- Issue TrackingPatchVendor Advisory
Уязвимые конфигурации
Одно из
Одно из
Одновременно
Одно из
Одно из
EPSS
7.1 High
CVSS3
7.8 High
CVSS3
Дефекты
Связанные уязвимости
A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data.
A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce templating injection when supplying templating data.
A template injection flaw was found in Ansible where a user's controll ...
EPSS
7.1 High
CVSS3
7.8 High
CVSS3