Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Synaesthesia 2.2 and earlier allows local users to execute arbitrary code via a symlink attack on the configuration file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Synaesthesia以不安全方式创建文件漏洞
Vulnerability Description
Synaesthesia是一款功能很多且界面特别的音乐CD播放程序。 Synaesthesia以不安全方式创建配置文件,本地攻击者可以利用这个漏洞提升权限。 synaesthesia会以root用户权限建立配置文件,本地用户可以通过建立符号连接把建立的配置文件指向系统文件,执行synaesthesia时,可导致以root用户权限建立配置文件时破坏系统文件,可造成系统拒绝服务或提升权限。
CVSS Information
N/A
Vulnerability Type
N/A