Description
Visual Tools DVR VX16 version 4.2.28 contains a local privilege escalation vulnerability in its Sudo configuration that allows attackers to gain root access. Attackers can exploit the unsafe Sudo settings by using mount commands to bind a shell, enabling unauthorized system-level privileges.
Problem types
Incorrect Privilege Assignment
Product status
Credits
Andrea D'Ubaldo
References
www.exploit-db.com/exploits/50104 (ExploitDB-50104)
visual-tools.com/ (Official Vendor Homepage)