Back

HIGH

Innominate mGuard Improper Privilege Management

Published Dec 20, 2014

Description

Innominate mGuard with firmware before 7.6.6 and 8.x before 8.1.4 allows remote authenticated admins to obtain root privileges by changing a PPP configuration setting.

Affected products

Remediation

Vendor solution

Innominate has released firmware patches Version 7.6.6 and Version 8.1.4 that mitigates the vulnerability in the mGuard firmware Version 7 and Version 8, respectively. Innominate recommends that customers using firmware versions older than Version 7, which are no longer being maintained, should upgrade to mGuard firmware Version 7.6.6 or Version 8.1.4. Innominate also recommends that customers limit access to the administrative interfaces to a minimum via firewall rules.

For additional information on the vulnerability, Innominate’s security advisory is available on its web site at:

http://www.innominate.com/en/downloads/security-advisories

Innominate’s firmware updates are available on its web site at:

http://www.innominate.com/en/downloads/updates

Metrics

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Dec 20, 2014
Updated Jul 28, 2025
Reserved Dec 2, 2014
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a