Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in srsexec in Sun Remote Services (SRS) Net Connect 3.2.3 and 3.2.4, as distributed in the SRS Proxy Core (SUNWsrspx) package, allows local users to gain privileges via format string specifiers in unspecified input that is logged through syslog.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun远程服务网络连接软件本地格式串漏洞
Vulnerability Description
Sun远程服务(SRS)网络连接是一种网上发布的系统管理服务的集合,用以帮助管理和优化IT环境。 Sun远程服务实现上存在漏洞,本地攻击者可能利用此漏洞控制服务器。 在安装了SRS网络连接服务(srsexec)的Solaris系统上,用户提供的数据以格式串的形式直接传送给了syslog()函数,攻击者以任意数据覆盖内存,导致以root权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A