Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Command Injection Vulnerability in Tenable Security Center
Vulnerability Description
A command injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Logging parameters, which could lead to the execution of arbitrary code on the Security Center host.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
sqlite 安全漏洞
Vulnerability Description
SQLite是一款轻型的数据库,是遵守ACID的关系型数据库管理系统。 sqlite存在安全漏洞。攻击者利用该漏洞可以修改日志记录参数。
CVSS Information
N/A
Vulnerability Type
N/A