Local Privilege Escalation Vulnerability Affects Spectrum Power 7
CVE-2024-29119
7.8HIGH
Summary
A vulnerability exists within Spectrum Power 7, affecting all versions prior to V24Q3, where several root-owned SUID binaries can be exploited by authenticated local attackers. This issue presents a significant risk as it may allow unauthorized escalation of privileges, enabling attackers to gain heightened access rights within the system. Organizations utilizing affected versions of Spectrum Power 7 should prioritize applying updates to mitigate potential exploitation of this critical vulnerability.
Affected Version(s)
Spectrum Power 7 0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved