漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Local Privilege Escalation vulnerability in Check Point Identity Agent Full for Windows OS
Vulnerability Description
A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation could allow an attacker to gain elevated privileges on the affected Windows endpoint.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
对搜索路径元素未加控制
Vulnerability Title
Check Point Identity Agent Full 代码问题漏洞
Vulnerability Description
Check Point Identity Agent Full是以色列Check Point公司的一个终端身份感知代理程序。 Check Point Identity Agent Full存在代码问题漏洞,该漏洞源于日志收集过程中可执行文件解析处理不当,可能导致已认证本地用户以SYSTEM权限执行任意代码,成功利用可导致攻击者提升权限。
CVSS Information
N/A
Vulnerability Type
N/A