CVE-2022-37706
HIGHUbuntu Enlightenment Mount Priv Esc
Title source: metasploitDescription
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library function mishandles pathnames that begin with a /dev/.. substring.
Exploits (9)
nomisec
WORKING POC
323 stars
by MaherAzzouzi · poc
https://github.com/MaherAzzouzi/CVE-2022-37706-LPE-exploit
nomisec
WORKING POC
2 stars
by ECU-10525611-Xander · poc
https://github.com/ECU-10525611-Xander/CVE-2022-37706
metasploit
WORKING POC
GREAT
by h00die, Maher Azzouzi · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/ubuntu_enlightenment_mount_priv_esc.rb
References (3)
Scores
CVSS v3
7.8
EPSS
0.5619
EPSS Percentile
98.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-269
Status
published
Affected Products (1)
enlightenment/enlightenment
< 0.25.4
Timeline
Published
Dec 25, 2022
Tracked Since
Feb 18, 2026