Vulnerability Description
Privilege Escalation on iBall iB-WRA300N3GT iB-WRA300N3GT_1.1.1 devices allows remote authenticated users to obtain root privileges by leveraging a guest/user/normal account to submit a modified privilege parameter to /form2userconfig.cgi.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Iball | Ib-Wra300N3Gt Firmware | 1.1.1 |
| Iball | Ib-Wra300N3Gt | - |
References
- http://www.uniquish.tech/2017/11/privelege-escalation-in-iball-ib.htmlExploitThird Party AdvisoryURL Repurposed
- http://www.uniquish.tech/2017/11/privelege-escalation-in-iball-ib.htmlExploitThird Party AdvisoryURL Repurposed
FAQ
What is CVE-2017-11169?
CVE-2017-11169 is a vulnerability with a CVSS score of 8.8 (HIGH). Privilege Escalation on iBall iB-WRA300N3GT iB-WRA300N3GT_1.1.1 devices allows remote authenticated users to obtain root privileges by leveraging a guest/user/normal account to submit a modified privi...
How severe is CVE-2017-11169?
CVE-2017-11169 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-11169?
Check the references section above for vendor advisories and patch information. Affected products include: Iball Ib-Wra300N3Gt Firmware, Iball Ib-Wra300N3Gt.