Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Shaman 1.0.9: Users can add the line askforpwd=false to his shaman.conf file, without entering the root password in shaman. The next time shaman is run, root privileges are granted despite the fact that the user never entered the root password.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Archlinux Shaman 授权问题漏洞
Vulnerability Description
Archlinux Shaman中存在本地权限提升漏洞。本地攻击者可利用该漏洞借助超级用户的权限执行任意代码,成功的利用这些漏洞将危害受影响的计算机。
CVSS Information
N/A
Vulnerability Type
N/A