Описание
Cyclades Serial Console Server 3.3.0 contains a local privilege escalation vulnerability due to overly permissive sudo privileges for the admin user and admin group. Attackers can exploit the default user configuration to gain root access by manipulating system binaries and leveraging unrestricted sudo permissions.
EPSS
Процентиль: 2%
0.00013
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-266
Связанные уязвимости
CVSS3: 6.2
github
25 дней назад
Cyclades Serial Console Server 3.3.0 contains a local privilege escalation vulnerability due to overly permissive sudo privileges for the admin user and admin group. Attackers can exploit the default user configuration to gain root access by manipulating system binaries and leveraging unrestricted sudo permissions.
EPSS
Процентиль: 2%
0.00013
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-266