Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-6617

The salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privileges, which makes it easier for remote attackers to gain privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.5%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2013-6617
  • Saltstack » Salt » Version: 0.11.0
    cpe:2.3:a:saltstack:salt:0.11.0
  • Saltstack » Salt » Version: 0.12.0
    cpe:2.3:a:saltstack:salt:0.12.0
  • Saltstack » Salt » Version: 0.13.0
    cpe:2.3:a:saltstack:salt:0.13.0
  • Saltstack » Salt » Version: 0.14.0
    cpe:2.3:a:saltstack:salt:0.14.0
  • Saltstack » Salt » Version: 0.15.0
    cpe:2.3:a:saltstack:salt:0.15.0
  • Saltstack » Salt » Version: 0.15.1
    cpe:2.3:a:saltstack:salt:0.15.1
  • Saltstack » Salt » Version: 0.16.0
    cpe:2.3:a:saltstack:salt:0.16.0
  • Saltstack » Salt » Version: 0.16.2
    cpe:2.3:a:saltstack:salt:0.16.2
  • Saltstack » Salt » Version: 0.16.3
    cpe:2.3:a:saltstack:salt:0.16.3
  • Saltstack » Salt » Version: 0.16.4
    cpe:2.3:a:saltstack:salt:0.16.4
  • Saltstack » Salt » Version: 0.17.0
    cpe:2.3:a:saltstack:salt:0.17.0


Contact Us

Shodan ® - All rights reserved