CVE-2023-36609
CVE-2023-36609
The affected TBox RTUs run OpenVPN with root privileges and can run user defined configuration scripts. An attacker could set up a local OpenVPN server and push a malicious script onto the TBox host to acquire root privileges.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
Ovarro · TBox LT2Ovarro · TBox MS-CPU32Ovarro · TBox MS-CPU32-S2Ovarro · TBox RM2Ovarro · TBox TG2Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →