漏洞标题
Check Point ZoneAlarm Extreme Security链接跟随本地权限提升漏洞
漏洞描述信息
Check Point ZoneAlarm Extreme Security 存在本地权限提升漏洞。该漏洞允许本地攻击者在受影响的 Check Point ZoneAlarm Extreme Security 安装中提升权限。攻击者必须首先获得在目标系统上执行低权限代码的能力,才能利用此漏洞。
具体漏洞存在于 Forensic Recorder 服务中。通过创建符号链接,攻击者可以利用该服务覆盖任意文件。攻击者可以利用此漏洞提升权限并以 SYSTEM 身份执行任意代码。该漏洞编号为 ZDI-CAN-21677。
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
漏洞类别
在文件访问前对链接解析不恰当(链接跟随)
漏洞标题
Check Point ZoneAlarm Extreme Security Link Following Local Privilege Escalation Vulnerability
漏洞描述信息
Check Point ZoneAlarm Extreme Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Check Point ZoneAlarm Extreme Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
The specific flaw exists within the Forensic Recorder service. By creating a symbolic link, an attacker can abuse the service to overwrite arbitrary files. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-21677.
CVSS信息
N/A
漏洞类别
在文件访问前对链接解析不恰当(链接跟随)
漏洞标题
Check Point ZoneAlarm Extreme Security 安全漏洞
漏洞描述信息
Check Point ZoneAlarm Extreme Security是以色列Check Point公司的一款安全防病毒软件。 Check Point ZoneAlarm Extreme Security存在安全漏洞,该漏洞源于Forensic Recorder服务符号链接处理不当,可能导致本地攻击者覆盖任意文件,进而提升权限,并在SYSTEM环境中执行任意代码。
CVSS信息
N/A
漏洞类别
其他