Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PGP Desktop before 9.5.1 does not validate data objects received over the (1) \pipe\pgpserv named pipe for PGPServ.exe or the (2) \pipe\pgpsdkserv named pipe for PGPsdkServ.exe, which allows remote authenticated users to gain privileges by sending a data object representing an absolute pointer, which causes code execution at the corresponding address.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PGP Desktop Windows服务远程代码执行漏洞
Vulnerability Description
PGP Desktop是一款强大的加密软件,具备文件、文件夹、邮件、即时通讯等加密功能。 PGP Desktop的命名管道在处理畸形对象时存在漏洞,远程攻击者可能利用此漏洞在机器上执行任意指令。 PGP Desktop所安装的PGPServ.exe/PGPsdkServ.exe服务暴露\pipe\pgpserv或pipe\pgpsdkserv命名管道。这个管道是RPC接口uuid:15cd3850-28ca-11ce-a4e8-00aa006116cb的端点,格式如下: [ uuid(15cd3850-2
CVSS Information
N/A
Vulnerability Type
N/A