ASUSTOR ABP是中国ASUSTOR公司的一款Windows数据备份软件。 ASUSTOR ABP存在安全漏洞,该漏洞源于IPC通信密钥可被普通本地用户读取,服务未校验请求进程身份且路径校验存在缺陷,攻击者可通过目录遍历以 SYSTEM 权限读写任意文件,实现本地权限提升。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ASUSTOR Inc. | ABP | ABP 2.0≤ 2.0.7.10171 |
affected |
| ASUSTOR Inc. | AES | AES 1.0≤ 1.1.1.3113 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ASUSTOR Inc. | ABP | ABP 2.0 ~ 2.0.7.10171 | - |
|
| ASUSTOR Inc. | AES | AES 1.0 ~ 1.1.1.3113 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet