Security Advisory

CVE-2023-5115

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-18 13:43:07
Last updated 2025-11-20 17:29:54
Assigner redhat
State PUBLISHED

Description

An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a malicious Ansible role and make the victim execute the role. A symlink can be used to overwrite a file outside of the extraction path.