严重程度: 低 | 攻击向量: 本地 | 发布日期: 2025年5月9日
This document highlights the security update for a vulnerability identified in the agent binary dcconfig.exe within Endpoint Central. This issue may allow an attacker to escalate local privileges to SYSTEM.
Chris Au 通过 ManageEngine Bug Bounty 计划
问题: Privileged file deletion performed by the agent during policy refresh in dcconfig.exe can be exploited to gain SYSTEM-level access.
修复版本:
注意: 此更新适用于本地和云版本。
如果您有任何疑问或需要帮助,请 联系我们的支持团队.