漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Unencrypted and Unauthenticated Communication Allows Data Exposure and Manipulation in iMonitor EAM
Vulnerability Description
iMonitor EAM 9.6394 transmits communication between the EAM client agent and the EAM server, as well as between the EAM monitor management software and the server, in plaintext without authentication or encryption. An attacker with network access can intercept sensitive information (such as credentials, keylogger data, and personally identifiable information) and tamper with traffic. This allows both unauthorized disclosure and modification of data, including issuing arbitrary commands to client agents.
CVSS Information
N/A
Vulnerability Type
敏感数据的明文传输
Vulnerability Title
iMonitor EAM 安全漏洞
Vulnerability Description
iMonitor EAM是美国iMonitor公司的一款员工电脑网络活动监控软件。 iMonitor EAM 9.6394版本存在安全漏洞,该漏洞源于通信过程中未使用身份验证或加密,可能导致敏感信息泄露和流量篡改。
CVSS Information
N/A
Vulnerability Type
N/A