Known vulnerabilities in Ansible - page 2

Software: Ansible
Software CPE: cpe:2.3:a:red_hat:ansible:*:*:*:*:*:*:*:*
Total vulnerabilities: 59
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Ansible Ansible is affected by 59 known vulnerabilities: 8 high, 11 medium, 40 low Critical High Medium Low

Vulnerabilities (59)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU29564 - Exposure of sensitive information to an unauthorized actor
CVE-2020-1739
CWE-200 Low
No
No
2.7.17, 2.8.8, 2.9.5, 2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 07.07.2020 SB2020031237
SB2020031723
SB2021080804
and 12 more
#VU29028 - Exposure of sensitive information to an unauthorized actor
CVE-2020-1740
CWE-200 Low
No
No
2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 15.06.2020 SB2020032420
SB2020061518
SB2020041764
and 12 more
#VU29026 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-1737
CWE-22 Low
No
No
2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 15.06.2020 SB2020032420
SB2020061518
SB2020031722
and 12 more
#VU29023 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-1733
CWE-362 Low
No
No
2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 15.06.2020 SB2020032420
SB2020061518
SB2020041763
and 10 more
#VU29022 -
CVE-2020-10685
Low
No
No
2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 15.06.2020 SB2020032420
SB2020061518
SB2021080804
and 10 more
#VU29017 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-10684
CWE-94 Low
No
No
2.7.17-1.el7ae, 2.8.11-1.el7ae, 2.8.11-1.el8ae, 2.9.7-1.el7ae, 2.9.7-1.el8ae 15.06.2020 SB2020032420
SB2020061518
SB2021080804
and 11 more
#VU27558 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-10691
CWE-22 Medium
No
No
2.9.7-1.el7ae, 2.9.7-1.el8ae 06.05.2020 SB2020050603
SB2020041766
SB2020042252
and 6 more
#VU30354 - Improper Control of Generation of Code ('Code Injection')
CVE-2014-4657
CWE-94 High
No
No
1.5.4 20.02.2020 SB2020022023
SB2014112304
#VU30355 - Exposure of sensitive information to an unauthorized actor
CVE-2014-4658
CWE-200 Low
No
No
1.5.5 20.02.2020 SB2020022024
#VU30356 - Insufficiently Protected Credentials
CVE-2014-4659
CWE-522 Low
No
No
1.5.5 20.02.2020 SB2020022024
#VU30358 - Insufficiently Protected Credentials
CVE-2014-4660
CWE-522 Low
No
No
1.5.5 20.02.2020 SB2020022024
#VU30359 - Improper Control of Generation of Code ('Code Injection')
CVE-2014-4678
CWE-94 High
No
No
1.6.4 20.02.2020 SB2020022026
SB2014071604
SB2014112304
#VU30362 - Improper Control of Generation of Code ('Code Injection')
CVE-2014-4966
CWE-94 High
No
No
1.6.7 18.02.2020 SB2020021828
SB2014072921
SB2014112304
and 5 more
#VU30363 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2014-4967
CWE-74 High
No
No
1.6.7 18.02.2020 SB2020021828
SB2014072922
SB2014112304
and 5 more
#VU34881 - Improper input validation
CVE-2014-2686
CWE-20 Medium
No
No
1.5.4 09.01.2020 SB2020010945
#VU23450 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-14905
CWE-78 Low
No
No
2.9.2 08.12.2019 SB2019120801
SB2020041628
SB2020041306
and 5 more
#VU23449 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-14904
CWE-78 Medium
No
No
2.9.2 08.12.2019 SB2019120801
SB2020041628
SB2020041306
and 8 more
#VU30577 - Improper input validation
CVE-2019-14856
CWE-20 Medium
No
No
2.8.6, 2.6.20-1.el7ae 26.11.2019 SB2019112625
SB2020041628
SB2020041306
and 4 more
#VU33375 - Information Exposure Through Log Files
CVE-2019-14858
CWE-532 Low
No
No
2.6.20-1.el7ae 14.10.2019 SB2020041628
SB2020041306
SB2019102433
and 1 more
#VU33354 - Information Exposure Through Log Files
CVE-2019-14846
CWE-532 Low
No
No
2.6.20-1.el7ae 08.10.2019 SB2020041628
SB2020041306
SB2019102430
and 3 more


Showing elements 21 - 40 out of 59