PT-2026-2403 · Cyclades · Cyclades Serial Console Server
CVE-2022-50927
·
Publicado
2026-01-13
·
Atualizado
2026-01-14
CVSS v3.1
6.2
Média
| Vetor | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Cyclades Serial Console Server version 3.3.0
Description
The Cyclades Serial Console Server version 3.3.0 has a local privilege escalation issue. This is due to overly permissive sudo privileges granted to the admin user and the admin group. An attacker can exploit the default user configuration to obtain root access by manipulating system binaries and leveraging unrestricted sudo permissions.
Recommendations
Apply necessary restrictions to the sudo privileges for the admin user and admin group.
Exploit
Correção
LPE
Incorrect Privilege Assignment
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cyclades Serial Console Server