CVE-2023-41776: Local Privilege Escalation Vulnerability of ZTE's ZXCLOUD iRAI
Published Jan 3, 2024
·Updated
There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can create a fake process, and to escalate local privileges.
Affected Software
2 affected components
All of the following
ZTE ZXCLOUD iRAI<7.23.32
ZTE ZXCLOUD iRAI
Remediation
Information
7.23.32
Event History
Jan 3, 2024
CVE Published
01:56 AM
Data Sourced
01:56 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-41776?
CVE-2023-41776 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2023-41776?
To fix CVE-2023-41776, update ZTE ZXCLOUD iRAI to version 7.23.32 or later.
3
Who is affected by CVE-2023-41776?
CVE-2023-41776 affects users of ZTE's ZXCLOUD iRAI version earlier than 7.23.32.
4
What access level is required to exploit CVE-2023-41776?
An attacker needs regular user privileges to exploit CVE-2023-41776.
5
What can attackers do using CVE-2023-41776?
Attackers can create a fake process to escalate their local privileges using CVE-2023-41776.