Vulnerabilities > CVE-2018-14533 - Unspecified vulnerability in Intenogroup Iopsys Firmware

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
intenogroup
exploit available

Summary

read_tmp and write_tmp in Inteno IOPSYS allow attackers to gain privileges after writing to /tmp/etc/smb.conf because /var is a symlink to /tmp.

Vulnerable Configurations

Part Description Count
OS
Intenogroup
1
Hardware
Intenogroup
1

Exploit-Db

descriptionInteno’s IOPSYS - (Authenticated) Local Privilege Escalation. CVE-2018-14533. Local exploit for Linux platform
fileexploits/linux/local/45089.py
idEDB-ID:45089
last seen2018-07-26
modified2018-07-21
platformlinux
port
published2018-07-21
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/45089/
titleInteno’s IOPSYS - (Authenticated) Local Privilege Escalation
typelocal