CVE-2016-9587 EXPLOIT
8.1
HIGH · CVSS 3.1 · EPSS 17.5% (pctl 97)
Patch early
A public exploit exists.
Description
Ansible before versions 2.1.4, 2.2.1 is vulnerable to an improper input validation in Ansible's handling of data sent from client systems. An attacker with control over a client system being managed by Ansible and the ability to send facts back to the Ansible server could use this flaw to execute arbitrary code on the Ansible server using the Ansible server privileges.
Scoring
| CVSS | 8.1 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 17.45% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-04-24 |
| Last modified | 2026-06-17 |
Affected (3)
| Vendor | Product |
|---|---|
| ansible | ansible |
| redhat | ansible |
| redhat | openstack |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Ansible 2.1.4/2.2.1 - Command Execution | 2017-01-09 |
References
- http://rhn.redhat.com/errata/RHSA-2017-0195.html
- http://rhn.redhat.com/errata/RHSA-2017-0260.html
- http://www.securityfocus.com/bid/95352
- https://access.redhat.com/errata/RHSA-2017:0448
- https://access.redhat.com/errata/RHSA-2017:0515
- https://access.redhat.com/errata/RHSA-2017:1685
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9587
- https://security.gentoo.org/glsa/201701-77
- https://www.exploit-db.com/exploits/41013/
- http://rhn.redhat.com/errata/RHSA-2017-0195.html
- http://rhn.redhat.com/errata/RHSA-2017-0260.html
- http://www.securityfocus.com/bid/95352
- https://access.redhat.com/errata/RHSA-2017:0448
- https://access.redhat.com/errata/RHSA-2017:0515
- https://access.redhat.com/errata/RHSA-2017:1685
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9587
- https://security.gentoo.org/glsa/201701-77
- https://www.exploit-db.com/exploits/41013/
→ the Explorer · watch your stack · NVD