SaltStack Salt CVE-2020-25592 Authentication Bypass Vulnerability

description-logoDescription

In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.

affected-products-logoAffected Applications

Salt

CVE References

CVE-2020-25592