Ansible AWX是美国Ansible公司开源的一款运维自动化管理平台。 Ansible AWX存在路径遍历漏洞,该漏洞源于project_archive action插件在提取ZIP和TAR归档文件时,将项目目录路径与成员文件名拼接,未进行路径规范化、边界验证或拒绝目录遍历序列,可能导致攻击者通过恶意归档在任意位置写入文件,进而实现远程代码执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | 0:4.6.32-1.el8ap< * |
unaffected |
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 9 | 0:4.6.32-1.el9ap< * |
unaffected |
| Red Hat | Red Hat Ansible Automation Platform 2.6 | 1787244009< * |
unaffected |
| Red Hat | Red Hat Ansible Automation Platform 2.6 for RHEL 9 | 0:4.7.16-1.el9ap< * |
unaffected |
| Red Hat | Red Hat Ansible Automation Platform 2.7 | 1787220257< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | 0:4.6.32-1.el8ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.5::el8
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 9 | 0:4.6.32-1.el9ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.5::el8
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.6 for RHEL 9 | 0:4.7.16-1.el9ap ~ * |
cpe:/a:redhat:ansible_automation_platform:2.6::el10
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.6 | 1787244009 ~ * |
cpe:/a:redhat:ansible_automation_platform:2.6::el9
|
|
| Red Hat | Red Hat Ansible Automation Platform 2.7 | 1787220257 ~ * |
cpe:/a:redhat:ansible_automation_platform:2.7::el9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-71366 | 7.7 HIGH | Awx: notification backends allow ssrf and credential leakage |
| CVE-2026-19685 | 7.1 HIGH | Networkmanager: networkmanager: 802-1x ca-path and phase2-ca-path bypass private_user rest |
| CVE-2026-78367 | 7.0 HIGH | Rpm: rpmbuild gettarspec() crafted tar member name → macro injection |
| CVE-2026-78323 | 6.5 MEDIUM | Jss: jss: jsstrustmanager does not verify nss trust flags on ca certificates |
No comments yet