#VU13617 Privilege escalation in Advanced Digital Broadcast products - CVE-2018-13110

 

#VU13617 Privilege escalation in Advanced Digital Broadcast products - CVE-2018-13110

Published: July 9, 2018 / Updated: June 17, 2021


Vulnerability identifier: #VU13617
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/U:Clear
CVE-ID: CVE-2018-13110
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability: Public exploit is available
Vulnerable software:
ADB VV 2220
ADB VV 5522
ADB DV 2210
ADB P.RG AV4202N
Software vendor:
Advanced Digital Broadcast

Description

The vulnerability allows a local attacker can gain elevated privileges on the target system.
The weakness exists in ADB broadband gateways / routers based on the Epicentro platform due to unspecified flaw. A local attacker can gain access to the command line interface (CLI) if previously disabled by the ISP, escalate privileges, and perform further attacks.

Remediation

Install update from vendor's website.

External links