OpenLiteSpeed 在 1.9.3 版本之前存在一个本地权限提升漏洞,该漏洞位于 admin/misc/lsup.sh 脚本中。该脚本以 root 身份从 nobody 用户可写的目录中执行未经验证的更新包。攻击者若控制了 nobody 身份的 Web 进程,可以在文件解包前替换 /usr/local/lsws/autoupdate/ 目录中的更新包,从而使后续的 install.sh 脚本以 root 权限执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| litespeedtech | openlitespeed | < 1.9.3 |
affected |
1.9.3 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| litespeedtech | openlitespeed | 0 ~ 1.9.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet