VendorsSaltStacksaltall versions
Vulnerabilities

SaltStack Salt

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

52CVEs
CVE-2013-4435
Salt (aka SaltStack) 0.15.0 through 0.17.0 allows remote authenticated users who are using external authentication or client ACL to execute restricted routines by embedding the routine in another routine.
Published 2013-11-05 · Modified
6.0EPSS 0.015
CVE-2020-28972
In SaltStack Salt before 3002.5, authentication to VMware vcenter, vsphere, and esxi servers (in the vmware.py files) does not always validate the SSL/TLS certificate.
Published 2021-02-27 · Modified
5.9EPSS 0.031
CVE-2016-3176
Salt before 2015.5.10 and 2015.8.x before 2015.8.8, when PAM external authentication is enabled, allows attackers to bypass the configured authentication service by passing an alternate service with a command sent to LocalClient.
Published 2017-01-31 · Modified
5.6EPSS 0.009
CVE-2020-17490
The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.
Published 2020-11-06 · Modified
5.5EPSS 0.004
CVE-2018-15750
Directory Traversal vulnerability in salt-api in SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allows remote attackers to determine which files exist on the server.
Published 2018-10-24 · Modified
5.3EPSS 0.043
CVE-2023-20897
Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.
Published 2023-09-05 · Modified
5.3EPSS 0.012
CVE-2015-1839
modules/chef.py in SaltStack before 2014.7.4 does not properly handle files in /tmp.
Published 2017-04-13 · Modified
5.3EPSS 0.004
CVE-2015-1838
modules/serverdensity_device.py in SaltStack before 2014.7.4 does not properly handle files in /tmp.
Published 2017-04-13 · Modified
5.3EPSS 0.004
CVE-2013-4439
Salt (aka SaltStack) before 0.15.0 through 0.17.0 allows remote authenticated minions to impersonate arbitrary minions via a crafted minion with a valid key.
Published 2013-11-05 · Modified
4.9EPSS 0.015
CVE-2021-25284
An issue was discovered in through SaltStack Salt before 3002.5. salt.modules.cmdmod can log credentials to the info or error log level.
Published 2021-02-27 · Modified
4.4EPSS 0.005
CVE-2022-22935
An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. A minion authentication denial of service can cause a MiTM attacker to force a minion process to stop by impersonating a master.
Published 2022-03-29 · Modified
4.3EPSS 0.016
CVE-2015-8034
The state.sls function in Salt before 2015.8.3 uses weak permissions on the cache data, which allows local users to obtain sensitive information by reading the file.
Published 2017-01-30 · Modified
3.3EPSS 0.004
← Prev2 / 2