← back
CVE-2022-41950

Privilege Escalation Vulnerability by wrong chmod param

CVSS 6.4 MEDIUMEPSS 0.4%CWE-250
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.4EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
22 Nov 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
super-xray is the GUI alternative for vulnerability scanning tool xray. In 0.2-beta, a privilege escalation vulnerability was discovered. This caused inaccurate default xray permissions. Note: this vulnerability only affects Linux and Mac OS systems. Users should upgrade to super-xray 0.3-beta.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
4ra1n · super-xray

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →