ZeroHour

CVE-2023-36624

PoC
CVSS 3.1
7.8 high
EPSS
<1%p25
Published
()
Modified
Description

Loxone Miniserver Go Gen.2 through 14.0.3.28 allows an authenticated operating system user to escalate privileges via the Sudo configuration. This allows the elevated execution of binaries without a password requirement.

Vendors
loxone
Products
miniserver go gen 2 firmware
Weakness
CWE-862
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.