Security Advisory

CVE-2020-28046

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-01 17:39:05
Last updated 2024-08-04 16:33:56
Assigner mitre
State PUBLISHED

Description

An issue was discovered in ProlinOS through 2.4.161.8859R. An attacker with local code execution privileges as a normal user (MAINAPP) can escalate to root privileges by exploiting the setuid installation of the xtables-multi binary and leveraging the ip6tables --modprobe switch.