Dell OpenManage Network Manager 6.2.0.51 SP3 Privilege Escalation
Posted by deepcore on November 7, 2018 – 7:42 pm
Dell OpenManage Network Manager exposes a MySQL listener that can be accessed with default credentials. This MySQL service is running as the root user, so an attacker can exploit this configuration to, e.g., deploy a backdoor and escalate privileges into the root account.
Post a reply
You must be logged in to post a comment.