Vulnerability Description
TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available after an adb connection, simply entering the su command provides root access (without requiring a password).
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Teleadapt | Roomcast Ta-2400 Firmware | >= 1.0, <= 3.1 |
| Teleadapt | Roomcast Ta-2400 | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/173764/RoomCast-TA-2400-Cleartext-Private-KThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/173764/RoomCast-TA-2400-Cleartext-Private-KThird Party AdvisoryVDB Entry
FAQ
What is CVE-2023-33745?
CVE-2023-33745 is a vulnerability with a CVSS score of 9.8 (CRITICAL). TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available after an adb connection, simply entering the su command provides root access (withou...
How severe is CVE-2023-33745?
CVE-2023-33745 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-33745?
Check the references section above for vendor advisories and patch information. Affected products include: Teleadapt Roomcast Ta-2400 Firmware, Teleadapt Roomcast Ta-2400.