Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Weak permissions on the configuration file in the PAM module in Grommunio Gromox 0.5 through 1.x before 1.28 allow a local unprivileged user in the gromox group to have the PAM stack execute arbitrary code upon loading the Gromox PAM module.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Grommunio Gromox 安全漏洞
Vulnerability Description
Grommunio Gromox是Grommunio公司的一个能够替代 Microsoft Exchange 的群件服务器。 Grommunio Gromox 1.28之前版本存在安全漏洞,该漏洞源于PAM 模块中配置文件的弱权限,攻击者利用该漏洞可以在加载 Gromox PAM 模块时让 PAM 堆栈执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A