CVE-2022-37706

HIGH

Ubuntu Enlightenment Mount Priv Esc

Title source: metasploit

Description

enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library function mishandles pathnames that begin with a /dev/.. substring.

Exploits (9)

nomisec WORKING POC 323 stars
by MaherAzzouzi · poc
https://github.com/MaherAzzouzi/CVE-2022-37706-LPE-exploit
nomisec WORKING POC 2 stars
by ECU-10525611-Xander · poc
https://github.com/ECU-10525611-Xander/CVE-2022-37706
nomisec WORKING POC 1 stars
by KaoXx · poc
https://github.com/KaoXx/CVE-2022-37706
nomisec WORKING POC 1 stars
by d3ndr1t30x · poc
https://github.com/d3ndr1t30x/CVE-2022-37706
nomisec WORKING POC
by junnythemarksman · poc
https://github.com/junnythemarksman/CVE-2022-37706
nomisec WORKING POC
by sanan2004 · poc
https://github.com/sanan2004/CVE-2022-37706
nomisec WORKING POC
by TACTICAL-HACK · poc
https://github.com/TACTICAL-HACK/CVE-2022-37706-SUID
exploitdb WORKING POC
by nu11secur1ty · textlocallinux
https://www.exploit-db.com/exploits/51180
metasploit WORKING POC GREAT
by h00die, Maher Azzouzi · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/ubuntu_enlightenment_mount_priv_esc.rb

Scores

CVSS v3 7.8
EPSS 0.5619
EPSS Percentile 98.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-269
Status published

Affected Products (1)

enlightenment/enlightenment < 0.25.4

Timeline

Published Dec 25, 2022
Tracked Since Feb 18, 2026