Privilege Escalation via Sudo Configuration in Loxone Miniserver Go Gen.2 through 14.0.3.28

Privilege Escalation via Sudo Configuration in Loxone Miniserver Go Gen.2 through 14.0.3.28

CVE-2023-36624 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Loxone Miniserver Go Gen.2 through 14.0.3.28 allows an authenticated operating system user to escalate privileges via the Sudo configuration. This allows the elevated execution of binaries without a password requirement.

Learn more about our Cis Benchmark Audit For Server Software.