VYPR

SaltStack

by Saltstack

CVEs (2)

  • CVE-2021-33226CriFeb 17, 2023
    risk 0.64cvss 9.8epss 0.02

    Buffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/status.py file. NOTE: this is disputed by third parties because an attacker cannot influence the eval input

  • CVE-2013-2228HigDec 3, 2019
    risk 0.53cvss 8.1epss 0.02

    SaltStack RSA Key Generation allows remote users to decrypt communications