Intel Data Center Manager 5.1 Local...

- AV AC AU C I A
发布: 2022-12-09
修订: 2023-01-31

The latest version (5.1) and all prior versions of Intel's Data Center Manager are vulnerable to a local privileges escalation vulnerability using the application user "dcm" used to run the web application and the rest interface. An attacker who gained remote code execution using this dcm user (i.e., through Log4j) is then able to escalate their privileges to root by abusing a weak sudo configuration for the "dcm" user.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息