CVE-2017-12763
HIGHNoMachine < 5.3.9 - Authenticated Privilege Escalation via Local File Access
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-12763. PoCs published by Daniele Linguaglossa.
AI-analyzed exploit summary This exploit leverages the NX_SYSTEM environment variable in NoMachine's nxnode.bin to execute a custom Perl script that calls nxexec with elevated privileges, allowing arbitrary file reads. The PoC crafts a temporary directory and Perl script to bypass sandbox restrictions and execute nxcat.sh.
Description
An unspecified server utility in NoMachine before 5.3.10 on Mac OS X and Linux allows authenticated users to gain privileges by gaining access to local files.
Exploits (1)
This exploit leverages the NX_SYSTEM environment variable in NoMachine's nxnode.bin to execute a custom Perl script that calls nxexec with elevated privileges, allowing arbitrary file reads. The PoC crafts a temporary directory and Perl script to bypass sandbox restrictions and execute nxcat.sh.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H