PoC Index

CVE-2023-36623

HIGH 7.8EPSS 0.3%

The root password of the Loxone Miniserver Go Gen.2 before 14.2 is calculated using hard-coded secrets and the MAC address. This allows a local user to calculate the root password and escalate privileges.

CVSS v3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
0.29% chance of exploitation in the next 30 days, 21th percentile
Published
2023-07-05
Updated
2024-11-21

Proof-of-concept exploits (1)

References

Related