漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Remote Spark SparkView Path Traversal in RDP Drive Redirection leading to RCE
Vulnerability Description
Path traversal vulnerability in Remote Spark (https://www.Remotespark.Com/) SparkView allows reading and writing arbitrary files in all directories as root. This leads to RCE. The affected component is the RDP drive redirection. Depending on implementation, the vulnerability can be exploited by an unauthenticated attacker. This issue affects SparkView: before build 1127.
CVSS Information
N/A
Vulnerability Type
相对路径遍历
Vulnerability Title
Remote Spark SparkView 安全漏洞
Vulnerability Description
Remote Spark SparkView是Remote Spark公司的一款基于浏览器实现远程桌面与终端访问的客户端软件。 Remote Spark SparkView build 1127之前版本存在安全漏洞,该漏洞源于RDP驱动器重定向存在路径遍历,可能导致未经验证的攻击者读取和写入任意文件,导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A