CVE-2024-51240
HIGHOpenWRT Luci LTS - Privilege Escalation
Title source: llmDescription
An issue in the luci-mod-rpc package in OpenWRT Luci LTS allows for privilege escalation from an admin account to root via the JSON-RPC-API, which is exposed by the luci-mod-rpc package
Scores
CVSS v3
8.0
EPSS
0.0005
EPSS Percentile
14.0%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-522
Status
draft
Timeline
Published
Nov 05, 2024
Tracked Since
Feb 18, 2026