Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Robotmk before 2.0.1 allows a local user to escalate privileges (e.g., to SYSTEM) if automated Python environment setup is enabled, because the "shared holotree usage" feature allows any user to edit any Python environment.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Robotmk 安全漏洞
Vulnerability Description
Robotmk是ELABIT开源的一个 Checkm k的 Robot 框架集成。 Robotmk 2.0.1之前版本存在安全漏洞,该漏洞源于shared holotree usage功能允许任何用户编辑任何Python环境,导致本地用户提升权限。
CVSS Information
N/A
Vulnerability Type
N/A