Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-8628
Description:Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-8628
BugTraq ID: 94109
http://www.securityfocus.com/bid/94109
RedHat Security Advisories: RHSA-2016:2778
https://access.redhat.com/errata/RHSA-2016:2778




© 1998-2025 E-Soft Inc. All rights reserved.