Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Microsoft Terminal Server, when running an application session with the "Start program at logon" and "Override settings from user profile and Client Connection Manager wizard" options, allows local users to execute arbitrary code by forcing an Explorer error. NOTE: a third-party researcher has stated that the options are "a convenience to users" and were not intended to restrict execution of arbitrary code
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft终端服务器Explorer错误任意代码执行漏洞
Vulnerability Description
**有争议** Microsoft终端服务器,当运行应用程序会话时,启用"登录时运行程序"和"从用户配置文件和客户端连接管理器向导中覆盖设置"选项,本地用户可通过强制产生Explorer错误来执行任意代码。注:第三方研究人员称这些选项"为用户提供了便利",并不打算限制任意代码的执行。
CVSS Information
N/A
Vulnerability Type
N/A