Security Advisory

CVE-2018-13801

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-10 17:00:00
Last updated 2024-09-16 22:10:15
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in ROX II (All versions < V2.12.1). An attacker with network access to port 22/tcp and valid low-privileged user credentials for the target device could perform a privilege escalation and gain root privileges. Successful exploitation requires user privileges of a low-privileged user but no user interaction. The vulnerability could allow an attacker to compromise confidentiality, integrity and availability of the system.