First published: Wed Jan 03 2024(Updated: )
There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can create a fake process, and to escalate local privileges.
Credit: psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ZTE ZXCloud iRAI | <7.23.32 | |
ZTE ZXCloud iRAI |
7.23.32
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41776 is classified as a local privilege escalation vulnerability.
To fix CVE-2023-41776, update ZTE ZXCLOUD iRAI to version 7.23.32 or later.
CVE-2023-41776 affects users of ZTE's ZXCLOUD iRAI version earlier than 7.23.32.
An attacker needs regular user privileges to exploit CVE-2023-41776.
Attackers can create a fake process to escalate their local privileges using CVE-2023-41776.