Security Advisory

CVE-2020-10589

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-15 20:25:36
Last updated 2024-08-04 11:06:09
Assigner mitre
State PUBLISHED

Description

v2rayL 2.1.3 allows local users to achieve root access because /etc/v2rayL/config.json is owned by a low-privileged user but contains commands that are executed as root, after v2rayL.service is restarted via Sudo.