Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In BMC Patrol before 9.13.10.02, the binary "listguests64" is configured with the setuid bit. However, when executing it, it will look for a binary named "virsh" using the PATH environment variable. The "listguests64" program will then run "virsh" using root privileges. This allows local users to elevate their privileges to root.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BMC Patrol 提权漏洞
Vulnerability Description
BMC Patrol是美国BMC Software公司的一套企业级的服务器管理工具。该工具提供IT基础架构的整体视图、故障报告和通知、用户权限管理等功能。 BMC Patrol 9.13.10.02之前版本中存在提权漏洞。本地攻击者可利用该漏洞获取root权限。
CVSS Information
N/A
Vulnerability Type
N/A