Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Usage of Hardcoded FTP Credentials EfficientLab WorkExaminer Professional
Vulnerability Description
The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304. An attacker with network access to this port can use weak hardcoded credentials to login to the FTP server and modify or read data, log files and gain remote code execution as NT Authority\SYSTEM on the server by exchanging accessible service binaries in the WorkExaminer installation directory (e.g. "C:\Program File (x86)\Work Examiner Professional Server").
CVSS Information
N/A
Vulnerability Type
使用硬编码的凭证
Vulnerability Title
Work Examiner Professional 安全漏洞
Vulnerability Description
Work Examiner Professional是美国Work Examiner公司的一款员工电脑监控软件。 Work Examiner Professional存在安全漏洞,该漏洞源于FTP服务器使用弱硬编码凭据,可能导致数据修改或读取以及远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A