Line 44:
Line 44:
| Trivial privilege escalation within IOS
| Trivial privilege escalation within IOS
| {{User|Hallowizer}}
| {{User|Hallowizer}}
+
|-
+
| IOS
+
| DVDLowOpenPartitionWithTmdAndTicket and DVDLowNoDiscOpenPartition do not verify that the TMD passed has the same ID as the TMD on the disc. By passing a [[Wii Backup Disc]] TMD and ticket, it may be possible to get group 0 access.
+
+
This exploit appears to be used in [[HackMii Installer]] 0.7-1.0 to install BootMii-IOS at startup.
+
| Setting the IOS permissions to group 0
+
| [[fail0verflow]],{{check}} {{User|Hallowizer}} (unconfirmed)
|}
|}