MAYDAY! It’s Time To Patch
ID: bed8274d-b292-5e47-9e46-d0b2c09704f0
STIX ID: report--bed8274d-b292-5e47-9e46-d0b2c09704f0
Feed Name: Censys Blog
Threat Score
Two critical SaltStack vulnerabilities (CVE-2020-11651 and CVE-2020-11652) enable attackers to bypass authentication and authorization, potentially allowing full takeover of systems managed by Salt (servers, cloud infrastructure, databases, and endpoints). Censys scanning found 5,122 publicly exposed and likely vulnerable Salt masters; the report urges immediate patching, limiting Internet exposure, and broader patch hygiene for common server software.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
