Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been found in Heimdal PRO v2.2.190, but it is most likely also present in Heimdal FREE and Heimdal CORP. Faulty permissions on the directory "C:\ProgramData\Heimdal Security\Heimdal Agent" allow BUILTIN\Users to write new files to the directory. On startup, the process Heimdal.MonitorServices.exe running as SYSTEM will attempt to load version.dll from this directory. Placing a malicious version.dll in this directory will result in privilege escalation. NOTE: any affected Heimdal products are completely unrelated to the Heimdal vendor of a Kerberos 5 product on the h5l.org web site.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Heimdal PRO 安全漏洞
Vulnerability Description
Heimdal PRO是美国Heimdal公司的一套系统安全软件。该软件主要用于保护系统的金融数据安全、私人数据安全和流量安全等。 Heimdal PRO 2.2.190版本中存在安全漏洞。攻击者可通过向C:ProgramDataHeimdal SecurityHeimdal Agent目录中放置恶意的version.dll文件利用该漏洞提升权限。
CVSS Information
N/A
Vulnerability Type
N/A