Matrix42 Empirum Personal Backup是德国Matrix42公司的一款用于终端用户数据备份与恢复管理的个人备份解决方案。 Matrix42 Empirum 25.5之前版本和26.x中26.2之前版本存在权限许可和访问控制问题漏洞,该漏洞源于PBackupVSS.exe创建命名管道时DACL权限设置不当,低权限本地攻击者可以连接到该管道并发送特制IPC消息通过不可信搜索路径以SYSTEM权限执行任意命令,从而导致权限提升。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-13540 | 6.3 MEDIUM | GitBucket RepositoryCreationService.scala Git.cloneRepository.setURI server-side request f |
| CVE-2026-13543 | 5.6 MEDIUM | Documenso Google OAuth Login handle-oauth-callback-url.ts improper authentication |
| CVE-2026-13529 | 5.6 MEDIUM | YzmCMS index.php sql injection |
| CVE-2026-13536 | 4.3 MEDIUM | GotoHTTP reg.12x cross site scripting |
| CVE-2026-13523 | 3.3 LOW | GPAC ISOBMFF base_encoding.c data amplification |
| CVE-2026-36848 | Gigamon GVOS 路径遍历漏洞 | |
| CVE-2026-51219 | Mz-automation lib60870 安全漏洞 | |
| CVE-2026-51218 | Dave Nardella Snap7 安全漏洞 | |
| CVE-2026-51221 | EIPStackGroup OpENer 安全漏洞 | |
| CVE-2026-37637 | Alex Yashkin PHP File Manager 代码注入漏洞 | |
| CVE-2026-31016 | Squidex 跨站请求伪造漏洞 |
No comments yet