Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
GFI MailEssentials < 21.8 Local Privilege Escalation
Vulnerability Description
GFI MailEssentials prior to version 21.8 is vulnerable to a local privilege escalation issue. A local attacker can escalate to NT Authority/SYSTEM by sending a crafted serialized payload to a .NET Remoting Service.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
可信数据的反序列化
Vulnerability Title
GFI MailEssentials 安全漏洞
Vulnerability Description
GFI MailEssentials是GFI公司的一款电子邮件安全套装,包含 14 个反垃圾邮件过滤器、3 个防病毒引擎以及恶意软件扫描功能。 GFI MailEssentials 21.8之前版本存在安全漏洞,该漏洞源于.NET Remoting Service处理特制序列化有效载荷不当,可能导致本地权限提升。
CVSS Information
N/A
Vulnerability Type
N/A