packetstormsecurity.com
http://packetstormsecurity.com/files/162058/SaltStack-Salt-API-Unauthenticated-Remote-Command-Execution.html CVE-2021-25282
SaltStack Salt Directory Traversal vulnerability
Record summary
EIP currently links 1 catalogued exploit and 1 repository PoC to CVE-2021-25282.
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| GitHub Advisory | Before 2015.8.13 · Fixed in 2015.8.13 | affected | |
| 2016.3.0 to < 2016.11.5 · Fixed in 2016.11.5 | affected | ||
| 2016.11.7 to < 2016.11.10 · Fixed in 2016.11.10 | affected | ||
| 2017.5.0 to < 2017.7.8 · Fixed in 2017.7.8 | affected | ||
| 2018.2.0 to ≤ 2018.3.5 | affected | ||
| 2019.2.0 to < 2019.2.8 · Fixed in 2019.2.8 | affected | ||
| 3000 to < 3000.7 · Fixed in 3000.7 | affected | ||
| 3001 to < 3001.5 · Fixed in 3001.5 | affected | ||
| 3002 to < 3002.3 · Fixed in 3002.3 | affected |
Proofs of concept
2Catalogued exploits
MetasploitSaltStack Salt API Unauthenticated RCE through wheel_async clientMetasploit exploitby Alex Seymour +1 moreNot analyzed1 file
Repository PoCs
GitHubImmersive-Labs-Sec/CVE-2021-25281Repository PoCby Immersive-Labs-SecStars: 27Not analyzed4 files
References
Showing 12 of 20github.com
https://github.com/pypa/advisory-database/tree/main/vulns/salt/PYSEC-2021-51.yaml github.com
https://github.com/saltstack/salt github.com
https://github.com/saltstack/salt/blob/8f9405cf8e6f7d7776d5000841c886dec6d96250/doc/topics/releases/3000.7.rst github.com
https://github.com/saltstack/salt/blob/8f9405cf8e6f7d7776d5000841c886dec6d96250/doc/topics/releases/3001.5.rst github.com
https://github.com/saltstack/salt/blob/8f9405cf8e6f7d7776d5000841c886dec6d96250/doc/topics/releases/3002.3.rst github.com
https://github.com/saltstack/salt/releases [debian-lts-announce] 20211110 [SECURITY] [DLA 2815-1] salt security updatemailing list
https://lists.debian.org/debian-lts-announce/2021/11/msg00009.html [debian-lts-announce] 20220103 [SECURITY] [DLA 2480-2] salt regression updatemailing list
https://lists.debian.org/debian-lts-announce/2022/01/msg00000.html FEDORA-2021-5756fbf8a6Vendor advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7GRVZ5WAEI3XFN2BDTL6DDXFS5HYSDVB FEDORA-2021-43eb5584adVendor advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FUGLOJ6NXLCIFRD2JTXBYQEMAEF2B6XH FEDORA-2021-904a2dbc0cVendor advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YOGNT2XWPOYV7YT75DN7PS4GIYWFKOK5