Executive brief
SaltStack Salt through version 3002 is vulnerable to shell injection via the Salt API. An unauthenticated remote attacker can execute arbitrary code by sending crafted web requests when the SSH client is enabled.
Affected products
- SaltStack Salt through 3002
Timeline
- 2020-11-03: disclosed: SaltStack publicly disclosed the vulnerability.
- 2021-11-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog.
- exploited: Reported as exploited in the wild.