Record summary

EIP currently links 1 catalogued exploit and 1 repository PoC to CVE-2021-25282.

Description

An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write method is vulnerable to directory traversal.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Affected products and versions

1
ProductSourceVersion rangeStatus
GitHub AdvisoryBefore 2015.8.13 · Fixed in 2015.8.13affected
2016.3.0 to < 2016.11.5 · Fixed in 2016.11.5affected
2016.11.7 to < 2016.11.10 · Fixed in 2016.11.10affected
2017.5.0 to < 2017.7.8 · Fixed in 2017.7.8affected
2018.2.0 to ≤ 2018.3.5affected
2019.2.0 to < 2019.2.8 · Fixed in 2019.2.8affected
3000 to < 3000.7 · Fixed in 3000.7affected
3001 to < 3001.5 · Fixed in 3001.5affected
3002 to < 3002.3 · Fixed in 3002.3affected

Proofs of concept

2

Catalogued exploits

MetasploitSaltStack Salt API Unauthenticated RCE through wheel_async clientMetasploit exploitby Alex Seymour +1 moreNot analyzed1 file

Ruby · linked to 2 vulnerabilities

Metasploit

PoC details

Repository PoCs

GitHubImmersive-Labs-Sec/CVE-2021-25281Repository PoCby Immersive-Labs-SecStars: 27Not analyzed4 files

Python · 7.6 KiB · linked to 2 vulnerabilities

GitHub

PoC details

References

Showing 12 of 20