Security Advisory

CVE-2020-24848

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-10-23 18:22:49
Last updated 2024-08-04 15:19:09
Assigner mitre
State PUBLISHED

Description

FruityWifi through 2.4 has an unsafe Sudo configuration [(ALL : ALL) NOPASSWD: ALL]. This allows an attacker to perform a system-level (root) local privilege escalation, allowing an attacker to gain complete persistent access to the local system.