Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sandboxie 5.26 allows a Sandbox Escape via an "import os" statement, followed by os.system("cmd") or os.system("powershell"), within a .py file. NOTE: the vendor disputes this issue because the observed behavior is consistent with the product's intended functionality
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sandboxie 输入验证错误漏洞
Vulnerability Description
Sandboxie是美国Sandboxie Holdings公司的一款虚拟软件。该软件支持在隔离的空间中运行其它应用程序,并阻止程序对系统进行更改。 Sandboxie 5.26版本中的.py文件存在安全漏洞。攻击者可利用该漏洞绕过沙盒。
CVSS Information
N/A
Vulnerability Type
N/A