Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Privilege escalation in mbDIALUP <= 3.9R0.0
Vulnerability Description
In MB connect line mbDIALUP versions <= 3.9R0.0 a low privileged local attacker can send a command to the service running with NT AUTHORITY\SYSTEM instructing it to execute a malicous OpenVPN configuration resulting in arbitrary code execution with the privileges of the service.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
特权管理不恰当
Vulnerability Title
MB connect line mbDIALUP 安全漏洞
Vulnerability Description
MB connect line mbDIALUP是MB connect line公司的一个应用软件。由 MB Connect Line GmbH 开发,供一位Software Informer用户使用。 mbDIALUP 存在安全漏洞,该漏洞源于在MB连接线mbDIALUP版本<= 3.9R0.0中,低特权的攻击者可以向使用NT AUTHORITYSYSTEM运行的服务发送命令,指示它执行恶意的OpenVPN配置。攻击者可利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A