Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Changing|IDExpert Windows Logon Agent - Remote Code Execution
Vulnerability Description
IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary executable files from a remote source and execute them.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
下载代码缺少完整性检查
Vulnerability Title
Changing IDExpert Windows Logon Agent 安全漏洞
Vulnerability Description
Changing IDExpert Windows Logon Agent是中国台湾全景(Changing)公司的一个用于增强Windows登录安全的身份认证客户端软件。 Changing IDExpert Windows Logon Agent存在安全漏洞,该漏洞源于允许未经验证的远程攻击者强制系统从远程源下载并执行任意可执行文件,可能导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A