Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An NTLM hash leak in Venki Supravizio BPM up to 18.0.1 allows authenticated attackers with Application Administrator access to escalate privileges on the underlying host system.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
不充分的凭证保护机制
Vulnerability Title
Venki Supravizio BPM 安全漏洞
Vulnerability Description
Venki Supravizio BPM是巴西Venki公司的一套流程管理解决方案。 Venki Supravizio BPM 18.0.1版本及之前版本存在安全漏洞,该漏洞源于存在NTLM哈希泄漏,允许经过身份验证的攻击者通过应用程序管理员权限提升底层主机系统的权限。
CVSS Information
N/A
Vulnerability Type
N/A