漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
ZPanel zsudo Local Privilege Escalation
漏洞信息
ZPanel includes a helper binary named zsudo, intended to allow restricted privilege escalation for administrative tasks. However, when misconfigured in /etc/sudoers, zsudo can be invoked by low-privileged users to execute arbitrary commands as root. This flaw enables local attackers with shell access to escalate privileges by writing a payload to a writable directory and executing it via zsudo. The vulnerability is particularly impactful in post-exploitation scenarios following web server compromise, where the attacker inherits access to zsudo.
漏洞信息
N/A
漏洞
特权管理不恰当
漏洞
zpanelx 安全漏洞
漏洞信息
zpanelx是The ZPanel Project开源的一个web托管控制面板。 zpanelx存在安全漏洞,该漏洞源于zsudo配置不当,可能导致本地攻击者通过写入有效载荷并执行来提升权限。
漏洞信息
N/A
漏洞
N/A