← Vulnerability feed

Vulnerability record · CVE-2013-4437 · published 5 November 2013

CVE-2013-4437: Saltstack salt vulnerability

Saltstack · Salt

Unspecified vulnerability in salt-ssh in Salt (aka SaltStack) 0.17.0 has unspecified impact and vectors related to "insecure Usage of /tmp."

10.0 CVSS 2.0 High EPSS 1.5% · top 27.5%
10.0CVSS 2.0 base score
1.5%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in salt-ssh in Salt (aka SaltStack) 0.17.0 has unspecified impact and vectors related to "insecure Usage of /tmp."

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-4437 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-16846SaltStack Salt API shell injection via crafted web requestsSaltStack Salt through 3002 is vulnerable to OS command injection when the SSH client is enabled and crafted web requests are sent to the Salt API. T…KEVEPSS 100%analysed9.8CVE-2020-11651SaltStack Salt master authentication bypass in ClearFuncsSaltStack Salt before 2019.2.4 and 3000 before 3000.2 fails to properly validate method calls in the salt-master ClearFuncs class, allowing remote un…KEVEPSS 97%analysed6.5CVE-2020-11652SaltStack Salt master path traversal in ClearFuncs methodsSaltStack Salt before 2019.2.4 and 3000 before 3000.2 has a path traversal flaw in the salt-master ClearFuncs class, where several methods fail to pr…KEVEPSS 86%analysed10.0CVE-2013-6617Saltstack salt permissions and access controls vulnerabilityThe salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privileges, which makes it easier for remote attackers to …EPSS 3.0%9.8CVE-2021-33226Saltstack salt classic buffer overflow vulnerabilityBuffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/sta…EPSS 1.6%9.8CVE-2021-3148Saltstack salt command injection vulnerabilityAn issue was discovered in SaltStack Salt before 3002.5. Sending crafted web requests to the Salt API can result in salt.utils.thin.gen_thin() comman…EPSS 8.2%9.8CVE-2021-3197SaltStack salt-api SSH client shell injection via ProxyCommandSaltStack Salt before 3002.5 contains a shell injection flaw in the salt-api SSH client. An attacker can inject commands by including a ProxyCommand …EPSS 72%analysed9.8CVE-2021-25281SaltStack salt-api authentication bypass in wheel_async clientSaltStack Salt before 3002.5 has an improper authentication flaw in salt-api: the wheel_async client does not honor eauth credentials. An unauthentic…EPSS 73%analysed

Source: NIST National Vulnerability Database (record CVE-2013-4437), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.