CVE-2023-20898
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Sep 5, 2023
Updated: Sep 14, 2023
Summary
CVE-2023-20898 is a vulnerability affecting Salt masters prior to versions 3005.2 and 3006.2. This issue allows Git Providers to access the wrong environment due to identical cache directory base names. Consequences of this vulnerability can include wrongful data disclosure, incorrect executions, data corruption, and crashes. Any Salt deployments utilizing Git Providers with distinct environments are at risk of experiencing these unwanted outcomes.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Saltstack
Affected Vendors
- VMware Inc.