漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Weak encryption mechanism for User directory
Vulnerability Description
The encryption algorithm used to protect the configuration of user accounts, stored in the built-in user directory of PcVue projects, all versions prior to 17.0.0, is not strong enough for the level of protection required. A local attacker could alter the existing configuration and ultimately gain privileged access to the PcVue application.
CVSS Information
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/AU:Y/R:U/RE:M/U:Amber
Vulnerability Type
不充分的加密强度
Vulnerability Title
ARC Informatique PcVue 加密问题漏洞
Vulnerability Description
arcinfo pcvue是arcinfo个人开发者的一套PC端可视化软件。 ARC Informatique PcVue 17.0.0之前版本存在加密问题漏洞,该漏洞源于用于保护用户账户配置信息的加密算法强度不足,可能导致本地攻击者修改现有配置并最终获得对PcVue应用程序的特权访问。
CVSS Information
N/A
Vulnerability Type
N/A