Vulnerabilities > CVE-2023-39059 - Unspecified vulnerability in Ansible-Semaphore Ansible Semaphore 2.8.90

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
ansible-semaphore

Summary

An issue in ansible semaphore v.2.8.90 allows a remote attacker to execute arbitrary code via a crafted payload to the extra variables parameter.

Vulnerable Configurations

Part Description Count
Application
Ansible-Semaphore
1