ZeroHour

CVE-2021-3144

CVSS 3.1
9.1 critical
EPSS
5%p92
Published
()
Modified
Description

In SaltStack Salt before 3002.5, eauth tokens can be used once after expiration. (They might be used to run command against the salt master or minions.)

Vendors
saltstackfedoraprojectdebian
Products
salt, fedora, debian linux
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.