Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a local privilege escalation vulnerability. An attacker who exploits this issue could execute arbitrary code on the local system.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
JP1/IT Desktop Management 2 安全漏洞
Vulnerability Description
Hitachi JP1/IT Desktop Management 2是日本日立(Hitachi)公司的自动收集各种类型的信息,让您可以在一处进行管理。 Hitachi JP1 IT Desktop Management存在安全漏洞,该漏洞源于通过本地管道调用带有任意参数的SendMessageTimeoutW API,导致本地权限升级漏洞。利用此问题的攻击者可利用该漏洞可以在本地系统上执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A