Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Improper Access Control leads to Local Privilege Escalation
Vulnerability Description
In Tenable Network Monitor versions prior to 6.5.1 on a Windows host, it was found that a non-administrative user could stage files in a local directory to run arbitrary code with SYSTEM privileges, potentially leading to local privilege escalation.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
访问控制不恰当
Vulnerability Title
Tenable Network Monitor 安全漏洞
Vulnerability Description
Tenable Network Monitor是美国Tenable公司的一个网络监控器。 Tenable Network Monitor 6.5.1之前版本存在安全漏洞,该漏洞源于非管理员用户可在本地目录中放置文件以SYSTEM权限运行任意代码,可能导致本地权限提升。
CVSS Information
N/A
Vulnerability Type
N/A