Fortra BoKS Manager 中的 crlserver 组件存在命令注入漏洞。通过 BCC、WSI REST 或 SOAP API,或使用 cacrl 命令行接口获得添加 CRL URL 权限的已认证用户,可诱导 crlserver 在 BoKS Master 上以 root 权限执行 shell 命令替换。BCC 和 WSI 提供可通过网络访问的管理路径,且无需本地 sudo 或 suexec 规则;而非 root 用户使用 cacrl 则需要此类权限配置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortra | BoKS Manager | 8.1.0.0 ~ 8.1.0.23 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-79901 | 9.9 CRITICAL | Predictable Active Directory service-account passwords in BoKS Manager |
| CVE-2026-79899 | 7.9 HIGH | Fortra BoKS Manager bccgethostcert insecure temporary file vulnerability |
| CVE-2026-79900 | 6.5 MEDIUM | Heap overflow in KSL checksum initialization |
No comments yet