Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Memu Play 6.0.7 Privilege Escalation via Insecure File Permissions
Vulnerability Description
Memu Play 6.0.7 contains an insecure file permissions vulnerability that allows low-privilege users to escalate privileges by replacing the MemuService.exe executable. Attackers can rename and overwrite MemuService.exe in the installation directory with a malicious executable, which executes with system-level privileges when the service restarts after a computer reboot.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
Microvirt Memu Play 访问控制错误漏洞
Vulnerability Description
Microvirt Memu Play是中国迈微(Microvirt)公司的一个安卓模拟器。 Microvirt Memu Play 6.0.7版本存在访问控制错误漏洞,该漏洞源于文件权限不安全,可能导致低权限用户通过替换MemuService.exe可执行文件提升权限。
CVSS Information
N/A
Vulnerability Type
N/A