Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in fwsnort before 1.6.4, when not running as root, allows local users to execute arbitrary code via a Trojan horse fwsnort.conf in the current working directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
fwsnort 不可信搜索路径漏洞
Vulnerability Description
fwsnort是美国软件开发者Michael Rash所研发的一套能够将Snort规则转换为等价的iptables规则的脚本。 fwsnort 1.6.4之前的版本中存在不可信搜索路径漏洞。当以非root权限运行时,本地攻击者可通过当前工作目录下的Trojan horse fwsnort.conf文件利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A