CVE-2022-50927
MEDIUMCyclades Serial Console Server 3.3.0 - Privilege Escalation
Title source: llmDescription
Cyclades Serial Console Server 3.3.0 contains a local privilege escalation vulnerability due to overly permissive sudo privileges for the admin user and admin group. Attackers can exploit the default user configuration to gain root access by manipulating system binaries and leveraging unrestricted sudo permissions.
Exploits (1)
Scores
CVSS v3
6.2
EPSS
0.0002
EPSS Percentile
4.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-266
Status
published
Products (1)
Vertiv/Cyclades Serial Console Server
1.0.0 - 3.3.0
Published
Jan 13, 2026
Tracked Since
Feb 18, 2026