Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Malwarebytes AdwCleaner before v.8.7.0 runs as Administrator and performs an insecure log file delete operation in which the target location is user-controllable, allowing a non-admin user to escalate privileges to SYSTEM via a symbolic link, a related issue to CVE-2023-28892. To exploit this, an attacker must create a file in a given folder path and intercept the application log file deletion flow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Malwarebytes AdwCleaner 安全漏洞
Vulnerability Description
Malwarebytes AdwCleaner是美国Malwarebytes公司的一款实用程序。该程序主要用于扫描和删除Windows计算机中的广告等预安装软件。 Malwarebytes AdwCleaner 8.7.0之前版本存在安全漏洞,该漏洞源于以管理员身份运行且执行不安全的日志文件删除操作,可能导致通过符号链接将权限提升至SYSTEM。
CVSS Information
N/A
Vulnerability Type
N/A