ZDI-23-978: KeySight N6841A RF Sensor deleteEmbeddedApp Directory Traversal Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of KeySight N6841A RF Sensor. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-978?
The severity of ZDI-23-978 is high as it allows privilege escalation for local attackers.
How do I fix ZDI-23-978?
To fix ZDI-23-978, update the KeySight N6841A RF Sensor software to the latest firmware version as instructed by the vendor.
Who is affected by ZDI-23-978?
Users of the KeySight N6841A RF Sensor are affected by the ZDI-23-978 vulnerability.
What type of attack does ZDI-23-978 involve?
ZDI-23-978 involves a local privilege escalation attack where the attacker must execute low-privileged code first.
Is remote exploitation possible with ZDI-23-978?
No, remote exploitation is not possible with ZDI-23-978; it requires local access to the affected system.