CVE-2016-7089
45Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 1.2%
from disclosure to weapon0 days
Published on NVDAug 24
1st PoCAug 19
VulnCheck+35d
exploitation probability
1.2%top 34% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
WatchGuard RapidStream appliances allow local users to gain privileges and execute arbitrary commands via a crafted ifconfig command, aka ESCALATEPLOWMAN.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/40270unverifiedcve_referencewww.exploit-db.com/exploits/40270/unverifiedcve_referencepacketstormsecurity.com/files/138393/ESCALATEPLOWMAN-WatchGuard-Privilege-Escalation.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.