cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-25315,https://securityvulnerability.io/vulnerability/CVE-2021-25315,salt-api unauthenticated remote code execution,CWE - CWE-287: Improper Authentication vulnerability in SUSE Linux Enterprise Server 15 SP 3; openSUSE Tumbleweed allows local attackers to execute arbitrary code via salt without the need to specify valid credentials. This issue affects: SUSE Linux Enterprise Server 15 SP 3 salt versions prior to 3002.2-3. openSUSE Tumbleweed salt version 3002.2-2.1 and prior versions. This issue affects: SUSE Linux Enterprise Server 15 SP 3 salt versions prior to 3002.2-3. openSUSE Tumbleweed salt version 3002.2-2.1 and prior versions.,Suse,"Suse Linux Enterprise Server 15 Sp 3,Tumbleweed",9.8,CRITICAL,0.0005000000237487257,false,,false,false,false,,,false,false,,2021-03-03T00:00:00.000Z,0