Description
Multiple SUID root-owned binaries are found in /home/monitor/terminal, /home/monitor/kore-terminal, /home/monitor/IDE-DPack/terminal-dpack, and /home/monitor/IDE-DPack/terminal-dpack2 in International Data Casting (IDC) SFX2100 Satellite Receiver, which may lead to local privlidge escalation from the `monitor` user to root
Problem types
CWE-269 Improper Privilege Management
Product status
SFX2100
Credits
Abdul Mhanni
References
www.abdulmhsblog.com/posts/sfx2100-vulns/