Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SiYuan before 3.7.4 Local Privilege Escalation via elevator.exe
Vulnerability Description
SiYuan before 3.7.4 fails to properly escape workspace directory paths when constructing command-line arguments for the elevated elevator.exe helper process. Attackers can create a malicious workspace directory with command metacharacters in its path and trigger the Microsoft Defender exclusion flow to execute arbitrary commands with administrator privileges after UAC approval.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
SiYuan 命令注入漏洞
Vulnerability Description
SiYuan是SiYuan团队开源的一款文档管理软件。 SiYuan 3.7.4之前版本存在命令注入漏洞,该漏洞源于未能正确转义工作区目录路径,可能导致攻击者创建包含命令元字符的恶意工作区目录,触发Microsoft Defender排除流程,在UAC批准后以管理员权限执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A