CVE-2020-1734 HIGH

CVE-2020-1734

Vendor Red Hat
Product Ansible
Weakness CWE-78
Published March 3, 2020
Last update August 4, 2024

CVSS base score

7.4/10
Attack vector Local
Attack complexity High
Privileges required Low
User interaction Required
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:L

What the vulnerability does

01Description

A flaw was found in the pipe lookup plugin of ansible. Arbitrary commands can be run, when the pipe lookup plugin uses subprocess.Popen() with shell=True, by overwriting ansible facts and the variable is not escaped by quote plugin. An attacker could take advantage and run arbitrary commands by overwriting the ansible facts.

Key dates

02Disclosure timeline

March 3, 2020 CVE published
August 4, 2024 Record updated