Salt Request Server Replay Attack Vulnerability
Vulnerability
A vulnerability exists in Salt's request server, allowing replay attacks when TLS encryption is not used. This issue affects Salt versions 3006.12 and 3007.0 through 3007.4.
Impact
Exploitation of this vulnerability allows for replay attacks, where an attacker can intercept and resend requests, potentially leading to unauthorized actions or commands being executed.
Added: Jun 13, 2025, 7:42 AM
Updated: Jun 13, 2025, 7:42 AM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
0.6exploitability
6.2remediation
0.0relevance
0.2threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
