|CVSS SCORE||7.3, (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of SaltStack Salt. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the rest_cherrypy module. When parsing the ssh_port parameter, the process does not properly validate a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the salt-api process.
SaltStack has issued an update to correct this vulnerability. More details can be found at:
|CREDIT||KPC of Trend Micro Zero Day Initiative