PT-2026-2403 · Cyclades · Cyclades Serial Console Server

CVE-2022-50927

·

Publicado

2026-01-13

·

Atualizado

2026-01-14

CVSS v3.1

6.2

Média

VetorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cyclades Serial Console Server version 3.3.0
Description The Cyclades Serial Console Server version 3.3.0 has a local privilege escalation issue. This is due to overly permissive sudo privileges granted to the admin user and the admin group. An attacker can exploit the default user configuration to obtain root access by manipulating system binaries and leveraging unrestricted sudo permissions.
Recommendations Apply necessary restrictions to the sudo privileges for the admin user and admin group.

Exploit

Correção

LPE

Incorrect Privilege Assignment

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2022-50927

Produtos afetados

Cyclades Serial Console Server