SaltStack Salt CVE-2020-16846 Command Injection Vulnerability

description-logoDescription

An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can result in shell injection.

affected-products-logoAffected Applications

Salt

CVE References

CVE-2020-16846