vendor:
Sudo
by:
breno
7.2
CVSS
HIGH
Security-Bypass Vulnerability
264
CWE
Product Name: Sudo
Affected Version From: sudo < 1.6.8p10
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2005
Sudo local root escalation privilege
A local attacker with the ability to run Python scripts can exploit this vulnerability to gain access to an interactive Python prompt. That attacker may then execute arbitrary code with elevated privileges, facilitating the complete compromise of affected computers.
Mitigation:
Upgrade to the latest version of Sudo