Security Advisory

CVE-2022-1356

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-17 20:11:50
Last updated 2025-04-16 16:20:36
Assigner icscert
State PUBLISHED

Description

cnMaestro is vulnerable to a local privilege escalation. By default, a user does not have root privileges. However, a user can run scripts as sudo, which could allow an attacker to gain root privileges when running user scripts outside allowed commands.