CVE-2013-4435

Salt (aka SaltStack) 0.15.0 through 0.17.0 allows remote authenticated users who are using external authentication or client ACL to execute restricted routines by embedding the routine in another routine.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
VendorProductVersion
saltstacksalt
0.15.0
saltstacksalt
0.15.1
saltstacksalt
0.16.0
saltstacksalt
0.16.2
saltstacksalt
0.16.3
saltstacksalt
0.16.4
saltstacksalt
0.17.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
salt
trusty
not-affected
saucy
ignored
raring
ignored
quantal
ignored
precise
dne
lucid
dne