漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Improper access control vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to bypass access restriction and download an arbitrary file of the directory where the product runs. As a result of exploiting this vulnerability with CVE-2023-22336 and CVE-2023-22344 vulnerabilities together, it may allow a remote attacker to execute an arbitrary code with SYSTEM privileges by sending a specially crafted script to the affected device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rakuraku PC Cloud Agent 安全漏洞
Vulnerability Description
Rakuraku PC Cloud Agent是云环境客户端。 SS1 Ver.13.0.0.40版本及之前版本、Rakuraku PC Cloud Agent Ver.2.1.8版本及之前版本存在安全漏洞,该漏洞源于访问控制不正确。攻击者利用该漏洞绕过访问限制并下载产品运行目录的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A