漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
PyMOL 2.5.0 contains a vulnerability in its "Run Script" function, which allows the execution of arbitrary Python code embedded within .PYM files. Attackers can craft a malicious .PYM file containing a Python reverse shell payload and exploit the function to achieve Remote Command Execution (RCE). This vulnerability arises because PyMOL treats .PYM files as Python scripts without properly validating or restricting the commands within the script, enabling attackers to run unauthorized commands in the context of the user running the application.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PyMOL 安全漏洞
Vulnerability Description
PyMOL是Schrodinger开源的一个分子可视化系统。 PyMOL 2.5.0版本存在安全漏洞,该漏洞源于没有正确验证或限制脚本中的命令,从而使攻击者能够在运行应用程序的用户上下文中运行未经授权的命令。
CVSS Information
N/A
Vulnerability Type
N/A