漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Vulnerability caused by unquoted file paths of Windows services registered by the Uninterruptible Power Supply (UPS) management application
Vulnerability Description
A vulnerability (CWE-428) has been identified in the Uninterruptible Power Supply (UPS) management application provided by OMRON SOCIAL SOLUTIONS Co., Ltd., where the executable file paths of Windows services are not enclosed in quotation marks. If the installation folder path of this product contains spaces, there is a possibility that unauthorized files may be executed under the service privileges by using paths containing spaces.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
未经引用的搜索路径或元素
Vulnerability Title
OMRON Uninterruptible Power Supply management application 安全漏洞
Vulnerability Description
OMRON Uninterruptible Power Supply management application是日本欧姆龙(OMRON)公司的一款监控与配置不间断电源设备的软件。 OMRON Uninterruptible Power Supply management application存在安全漏洞,该漏洞源于Windows服务可执行文件路径未使用引号括起,可能导致在服务权限下执行未授权文件。
CVSS Information
N/A
Vulnerability Type
N/A