CVE-2020-28251

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/12/2020
Last modified:
21/07/2021

Description

NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with administrative access to a sensor, with credentials to invoke a command to provide root access to the operating system. The attacker must complete a straightforward password-cracking exercise.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netscout:airmagnet_enterprise:*:*:*:*:*:*:*:* 11.1.4 (including)
cpe:2.3:h:netscout:sensor4-r1s1w1-e:-:*:*:*:*:*:*:*
cpe:2.3:h:netscout:sensor4-r2s1-e:-:*:*:*:*:*:*:*
cpe:2.3:h:netscout:sensor4-r2s1-i:-:*:*:*:*:*:*:*
cpe:2.3:h:netscout:sensor6-r1s0w1-e:-:*:*:*:*:*:*:*
cpe:2.3:h:netscout:sensor6-r2s1-e:-:*:*:*:*:*:*:*
cpe:2.3:h:netscout:sensor6-r2s1-i:-:*:*:*:*:*:*:*