CRITICAL🇵🇱 Wersja polska

CVE-2026-29127

CVSS 9.2v4.0pub. 2026-03-05upd. 2026-03-09

The IDC SFX2100 Satellite Receiver sets overly permissive file system permissions on the monitor user's home directory. The directory is configured with permissions 0777, granting read, write, and execute access to all local users on the system, which may cause local privilege escalation depending on conditions of the system due to the presence of highly privileged processes and binaries residing within the affected directory.

🤖 AI Analysis
How it works

The home directory of the 'monitor' user is configured with 0777 permissions, which means full access (read, write, execute) for all local system users. Highly privileged processes or binary files reside in this directory. A local attacker without elevated privileges can overwrite or plant a malicious file in this directory and then wait for it to be executed by a privileged process, thereby gaining higher privileges in the system.

Impact

A local attacker can escalate their privileges in the system by manipulating files in a directory with overly permissive permissions, potentially gaining control over privileged processes or the entire device.

Mitigation & patch

Apply patches available from the manufacturer according to the references. Until updates are available, it is recommended to manually change the permissions of the 'monitor' user's home directory to more restrictive settings (e.g., 0750 or 0700) and restrict local system access to trusted users only.

Who is affected

Datacast SFX2100 (IDC SFX2100 Satellite Receiver) device firmware; specific firmware versions indicated in the manufacturer's references.

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Datacast Sfx2100

    HW
    Datacast
    all versions
  • Datacast Sfx2100 Firmware

    OS
    Datacast
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
LPE
CWE
References

Related vulnerabilities

CVE-2026-28775CRITICAL10.0PL ✓same product

RCE jako root przez SNMP w odbiorniku IDC SFX Series SuperFlex

CVE-2026-28777CRITICAL9.2PL ✓same product

Hardcoded hasło w urządzeniu IDC SFX2100 – nieautoryzowany dostęp SSH

CVE-2026-28774CRITICAL9.3PL ✓same product

Command Injection w narzędziu Traceroute interfejsu IDC SFX2100

CVE-2026-28773CRITICAL9.3PL ✓same product

Command injection w narzędziu diagnostycznym Ping urządzenia IDC SFX2100

CVE-2026-29120CRITICAL9.2PL ✓same product

Hardcoded root password hash w firmware IDC SFX2100 — privilege escalation