Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web interface in CUPS 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/ and language[0] set to null. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3537.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple CUPS Web Interface 本地提权漏洞
Vulnerability Description
Apple CUPS(Common Unix Printing System)是美国苹果(Apple)公司的一套开源的用于OS X和类Unix系统的打印系统。该系统基于Internet打印协议(IPP),提供大多数PostScript和raster打印机服务。 Apple CUPS 1.7.4版本的Web界面中存在安全漏洞。在lp组中的本地攻击者可通过向/var/cache/cups/rss/ URL下的文件实施符号链接攻击并将语言【0】设置为空利用该漏洞浏览任意文件。
CVSS Information
N/A
Vulnerability Type
N/A