ID:463 - Exploit for Security bypass - CVE-2016-9111
Published: March 18, 2020
Vulnerability identifier: #VU1137
Vulnerability risk: Low
CVE-ID: CVE-2016-9111
CWE-ID: CWE-284
Exploitation vector: Local access
Vulnerable software:
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to bypass security restrictions on the target system.
The weaknes is due to improper access control. By disconnecting the target system from the network and reconnecting it to the network, a local user can unlock the screen and obtain the valid user's account.
Successful exploitation of the vulnerability results in a local attacler's user to the vulnerable system.
The weaknes is due to improper access control. By disconnecting the target system from the network and reconnecting it to the network, a local user can unlock the screen and obtain the valid user's account.
Successful exploitation of the vulnerability results in a local attacler's user to the vulnerable system.
Remediation
Securitylab is currently unaware of the patches addressing the vulnerability.