CVE-2020-25592 log
| Source |
|
| Severity | Critical |
| Remote | Yes |
| Type | Arbitrary command execution |
| Description | An issue has been found in Salt before 3001.3, 3000.5, 2019.2.7 where, when using the SSH client, an unauthenticated user can gain access to run commands against targets set in a Salt-SSH roster. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1262 | salt | 2019.2.4-1 | 2019.2.7-1 | Critical | Fixed |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 10 Nov 2020 | ASA-202011-7 | AVG-1262 | salt | Critical | multiple issues |