PoC Index

CVE-2023-36624

HIGH 7.8EPSS 0.3%

Loxone Miniserver Go Gen.2 through 14.0.3.28 allows an authenticated operating system user to escalate privileges via the Sudo configuration. This allows the elevated execution of binaries without a password requirement.

CVSS v3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
0.32% chance of exploitation in the next 30 days, 24th percentile
Published
2023-07-05
Updated
2024-11-21

Proof-of-concept exploits (1)

References

Related