Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user to execute /usr/bin/tcpdump as root without a password. By leveraging the tcpdump -z option, an authenticated attacker can achieve arbitrary command execution.
History

Fri, 04 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
Title Privilege Escalation via tcpdump on MBS‑Solutions X‑Serie Gateway firmware
Weaknesses CWE-269
CWE-284

Fri, 04 Sep 2026 16:00:00 +0000

Type Values Removed Values Added
Description Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user to execute /usr/bin/tcpdump as root without a password. By leveraging the tcpdump -z option, an authenticated attacker can achieve arbitrary command execution.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-04T15:48:54.070Z

Reserved: 2026-08-17T00:00:00.000Z

Link: CVE-2026-75166

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-04T16:17:58.570

Modified: 2026-09-04T16:17:58.570

Link: CVE-2026-75166

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-04T23:00:17Z