VDB
CVE-2020-11651
CVE-2020-11651
PUBLISHED
KEV
CVSS 9.800000190734863 CRITICAL
An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly validate method calls. This allows a remote user to access some methods without authentication. These methods can be used to retrieve user tokens from the salt master and/or run arbitrary commands on salt minions.
EPSS 96.61% · 99.9th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
96.61%
99.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | salt | 2015.8.1+ds-2, 2015.8.3+ds-1, 2015.8.3+ds-2 |
| Ubuntu:18.04:LTS | salt | 0, 2016.11.5+ds-1, 2016.11.8+dfsg1-1 |
| Ubuntu:Pro:14.04:LTS | salt | 0, 0.16.0-1, 0.16.4-2 |
Timeline
- CVE Published
- May 1, 2020 PoC Published
- May 3, 2020 PoC Published
- May 4, 2020 PoC Published
- May 7, 2020 PoC Published
- May 12, 2020 PoC Published
- May 12, 2020 PoC Published
- May 14, 2020 PoC Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Nov 3, 2021 CISA KEV Added
References
- https://ubuntu.com/security/CVE-2020-11651 third-party-advisory
- https://github.com/saltstack/salt/blob/v3000.2_docs/doc/topics/releases/3000.2.rst third-party-advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00047.html third-party-advisory
- https://docs.saltstack.com/en/latest/topics/releases/2019.2.4.html third-party-advisory
- https://ubuntu.com/security/notices/USN-4459-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2020-11651 third-party-advisory
- https://ubuntu.com/security/notices/USN-6849-1 vendor-advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog third-party-advisory
- Multiples vulnérabilités dans SaltStack advisory