CVE-2023-36609
CVE-2023-36609
The affected TBox RTUs run OpenVPN with root privileges and can run user defined configuration scripts. An attacker could set up a local OpenVPN server and push a malicious script onto the TBox host to acquire root privileges.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Ovarro · TBox LT2Ovarro · TBox MS-CPU32Ovarro · TBox MS-CPU32-S2Ovarro · TBox RM2Ovarro · TBox TG2¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →