Home
MEDIUM: 5.0 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:NDefault status
unaffected
Any version before 3005.5, 3006.6
affected
Description
Syndic cache directory creation is vulnerable to a directory traversal attack in salt project which can lead a malicious attacker to create an arbitrary directory on a Salt master.
Product status
Any version before 3005.5, 3006.6
References
saltproject.io/security-announcements/2024-01-31-advisory/
saltproject.io/security-announcements/2024-01-31-advisory/