CVE-2021-21996 - CERT CVE
ID CVE-2021-21996
Sažetak An issue was discovered in SaltStack Salt before 3003.3. A user who has control of the source, and source_hash URLs can gain full file system access as root on a salt minion.
Reference
CVSS
Base: 7.1
Impact: 10.0
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:N/AC:H/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 21-12-2023 - 18:30
Objavljeno 08-09-2021 - 15:15