Files
CVEs-PoC/2021/CVE-2021-3197.md
2025-09-29 21:09:30 +02:00

751 B

CVE-2021-3197

Description

An issue was discovered in SaltStack Salt before 3002.5. The salt-api's ssh client is vulnerable to a shell injection by including ProxyCommand in an argument, or via ssh_options provided in an API request.

POC

Reference

Github