漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
An issue was discovered in PureVPN through 5.19.4.0 on Windows. The client installation grants the Everyone group Full Control permission to the installation directory. In addition, the PureVPNService.exe service, which runs under NT Authority\SYSTEM privileges, tries to load several dynamic-link libraries using relative paths instead of the absolute path. When not using a fully qualified path, the application will first try to load the library from the directory from which the application is started. As the residing directory of PureVPNService.exe is writable to all users, this makes the application susceptible to privilege escalation through DLL hijacking.
漏洞信息
N/A
漏洞
N/A
漏洞
PureVPN for Windows 权限许可和访问控制漏洞
漏洞信息
PureVPN for Windows是一套基于Windows平台的VPN软件。 基于Windows平台的PureVPN 5.19.4.0及之前版本中存在提权漏洞。攻击者可通过劫持DLL利用该漏洞获取NT Authority\SYSTEM权限。
漏洞信息
N/A
漏洞
N/A