CVE-2024-38825
published 2025-06-13CVE-2024-38825: The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate…
PriorityP338medium6.4CVSS 3.1
AVNACLPRLUINSCCLILAN
EPSS
0.13%
3.1th percentile
The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate by the module. This is not pki authentication, as the caller does not need access to the corresponding private key for the authentication attempt to be accepted.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| saltstack | salt | >= 3006.0rc1 < 3006.12 | 3006.12 |
| saltstack | salt | >= 3007.0rc1 < 3007.4 | 3007.4 |
| vmware | salt | >= 3006.x < 3006.12 | 3006.12 |
| vmware | salt | >= 3007.x < 3007.4 | 3007.4 |
CVSS provenance
nvdv3.16.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
osv6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Salt's salt.auth.pki module does not properly authenticate callers
osv·2025-06-13
CVE-2024-38825 [MEDIUM] Salt's salt.auth.pki module does not properly authenticate callers
Salt's salt.auth.pki module does not properly authenticate callers
The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate by the module. This is not pki authentication, as the caller does not need access to the corresponding private key for the authentication attempt to be accepted.
GHSA
Salt's salt.auth.pki module does not properly authenticate callers
ghsa·2025-06-13
CVE-2024-38825 [MEDIUM] CWE-287 Salt's salt.auth.pki module does not properly authenticate callers
Salt's salt.auth.pki module does not properly authenticate callers
The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate by the module. This is not pki authentication, as the caller does not need access to the corresponding private key for the authentication attempt to be accepted.
OSV
CVE-2024-38825: The salt
osv·2025-06-13·CVSS 6.4
CVE-2024-38825 [MEDIUM] CVE-2024-38825: The salt
The salt.auth.pki module does not properly authenticate callers. The "password" field contains a public certificate which is validated against a CA certificate by the module. This is not pki authentication, as the caller does not need access to the corresponding private key for the authentication attempt to be accepted.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-06-13
Published