vendor:
Flamingo XL
by:
LiquidWorm
7.5
CVSS
HIGH
Remote Root Jailbreak
CWE
Product Name: Flamingo XL
Affected Version From: 3.2.9 Hardware revision 1.0 SoapLive 2.0.3
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: GNU/Linux 3.1.4 (x86_64) Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8g DAV/2 PHP/5.3.6
2023
Anevia Flamingo XL 3.2.9 – Remote Root Jailbreak
Once the admin establishes a secure shell session, she gets dropped into a sandboxed environment using the login binary that allows a specific set of commands. One of those commands that can be exploited to escape the jailed shell is traceroute. A remote attacker can breakout of the restricted environment and have full root access to the device.
Mitigation:
Unknown