VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.
The product initializes or sets a resource with a default that is intended to be changed by the administrator, but the default is not secure.
Link | Tags |
---|---|
https://whitehoodhacker.net/posts/2021-10-04-the-big-rick | third party advisory exploit |
https://www.exterity.com | vendor advisory |