← back
CVE-2020-25592

CVE-2020-25592

30Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 58%
from disclosure to weapon0 days
Published on NVDNov 6
metasploitNov 3
exploitation probability
58%top 1% of all CVEs
observed exploitation
nono source reports it
In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.
Affected products
n/a · n/a