Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper access control vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to bypass access restriction and download an arbitrary file of the directory where the product runs. As a result of exploiting this vulnerability with CVE-2023-22336 and CVE-2023-22344 vulnerabilities together, it may allow a remote attacker to execute an arbitrary code with SYSTEM privileges by sending a specially crafted script to the affected device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rakuraku PC Cloud Agent 安全漏洞
Vulnerability Description
Rakuraku PC Cloud Agent是云环境客户端。 SS1 Ver.13.0.0.40版本及之前版本、Rakuraku PC Cloud Agent Ver.2.1.8版本及之前版本存在安全漏洞,该漏洞源于访问控制不正确。攻击者利用该漏洞绕过访问限制并下载产品运行目录的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A