Ansible是美国Ansible公司的一款计算机系统配置管理器。该产品可用于发布、管理和编排计算机系统。Ansible Engine是其中的一个Ansible引擎。 Ansible Engine 2.7.x、2.8.x和2.9.x版本中存在安全漏洞,该漏洞源于文件使用‘atomic_move’原语进行移动时,无法指定文件模式。攻击者可利用该漏洞获取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-1753 | 5.0 MEDIUM | Ansible Engine 日志信息泄露漏洞 |
| CVE-2020-1735 | 4.2 MEDIUM | Ansible 路径遍历漏洞 |
| CVE-2020-1740 | 3.9 LOW | Ansible 信息泄露漏洞 |
| CVE-2020-1738 | 3.9 LOW | Ansible 参数注入漏洞 |
| CVE-2019-14887 | 红帽 Red Hat Wildfly 安全漏洞 |
No comments yet