Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5m3-9gmr-6wrh

Опубликовано: 15 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 6.2

Описание

Visual Tools DVR VX16 version 4.2.28 contains a local privilege escalation vulnerability in its Sudo configuration that allows attackers to gain root access. Attackers can exploit the unsafe Sudo settings by using mount commands to bind a shell, enabling unauthorized system-level privileges.

Visual Tools DVR VX16 version 4.2.28 contains a local privilege escalation vulnerability in its Sudo configuration that allows attackers to gain root access. Attackers can exploit the unsafe Sudo settings by using mount commands to bind a shell, enabling unauthorized system-level privileges.

EPSS

Процентиль: 2%
0.00014
Низкий

8.5 High

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 6.2
nvd
24 дня назад

Visual Tools DVR VX16 version 4.2.28 contains a local privilege escalation vulnerability in its Sudo configuration that allows attackers to gain root access. Attackers can exploit the unsafe Sudo settings by using mount commands to bind a shell, enabling unauthorized system-level privileges.

EPSS

Процентиль: 2%
0.00014
Низкий

8.5 High

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-266