Exploit for #VU50979 Improper access control in Salt


| Updated: 2021-05-09

Vulnerability identifier: #VU50979

Vulnerability risk: Medium

CVSSv4.0: 8.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:A/U:Green]

CVE-ID: CVE-2021-25281

CWE-ID: CWE-284

Exploitation vector: Network

Exploits in database: 2

Vulnerable software:
Salt
Web applications / Remote management & hosting panels

Vendor: SaltStack