Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The agent in OSSEC through 3.1.0 on Windows allows local users to gain NT AUTHORITY\SYSTEM access via Directory Traversal by leveraging full access to the associated OSSEC server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OSSEC 路径遍历漏洞
Vulnerability Description
OSSEC是OSSEC团队开发的一套开源的多平台入侵检测系统。该系统提供日志分析、文件完整性检测和实时报警等功能。 基于Windows平台的OSSEC 3.1.0及之前版本中的agent存在目录遍历漏洞。本地攻击者可通过访问相关联的OSSEC服务器利用该漏洞获取NT AUTHORITY\SYSTEM访问权限。
CVSS Information
N/A
Vulnerability Type
N/A