{"id":"CVE-2020-35459","aliases":["GHSA-99xx-83jm-h24m","PYSEC-2026-799"],"title":"ClusterLabs crmsh vulnerable to shell code injection","summary":"ClusterLabs crmsh vulnerable to shell code injection","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","vendor":"crmsh","product":"crmsh","ecosystem":"pip","affected":["crmsh <= 4.2.1"],"published":"2022-05-24","updated":"2026-07-07","source":"OSV","sourceUrl":"https://osv.dev/vulnerability/GHSA-99xx-83jm-h24m","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2020-35459"},{"url":"https://bugzilla.suse.com/show_bug.cgi?id=1179999"},{"url":"https://github.com/ClusterLabs/crmsh"},{"url":"https://github.com/ClusterLabs/crmsh/blob/a403aa15f3ea575adfe5e43bf2a31c9f9094fcda/crmsh/history.py#L476"},{"url":"https://github.com/ClusterLabs/crmsh/releases"},{"url":"https://lists.debian.org/debian-lts-announce/2021/01/msg00021.html"},{"url":"https://www.openwall.com/lists/oss-security/2021/01/12/3"},{"url":"http://www.openwall.com/lists/oss-security/2021/01/12/3"}],"tags":["osv","pip"],"epss":0.00681,"epssPercentile":0.50599,"ingestedAt":"2026-07-08T18:25:47.813Z","slug":"CVE-2020-35459","body":"## Overview\n\nAn issue was discovered in ClusterLabs crmsh through 4.2.1. Local attackers able to call `crm history` (when `crm` is run) were able to execute commands via shell code injection to the crm history commandline, potentially allowing escalation of privileges.\n\n## Affected packages\n\n- `crmsh <= 4.2.1`\n\n## Remediation\n\nRefer to the advisory for the patched release.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}