Lucene search

K
osvGoogleOSV:CVE-2020-24848
HistoryOct 23, 2020 - 7:15 p.m.

CVE-2020-24848

2020-10-2319:15:12
Google
osv.dev
4
fruitywifi
sudo configuration
vulnerability
local privilege escalation
persistent access
cve-2020-24848
software

AI Score

7

Confidence

High

EPSS

0

Percentile

5.1%

FruityWifi through 2.4 has an unsafe Sudo configuration [(ALL : ALL) NOPASSWD: ALL]. This allows an attacker to perform a system-level (root) local privilege escalation, allowing an attacker to gain complete persistent access to the local system.

AI Score

7

Confidence

High

EPSS

0

Percentile

5.1%

Related for OSV:CVE-2020-24848