CNNVD-202509-2822 Information

CNNVD ID

CNNVD-202509-2822

CVE-2025-59307

  • CNNVD Published: 2025-09-17

Description (Chinese)

Century Corporation RAID Manager是日本Century Corporation公司的一款硬件管理软件。 Century Corporation RAID Manager存在代码问题漏洞,该漏洞源于Windows服务注册了未加引号的文件路径,可能导致具有系统驱动器根目录写入权限的用户以SYSTEM权限执行任意代码。

Description (English)

CENTURY CORPORATION RAID Manager is a hardware management software for CENTURY CORPORATION in Japan. The Code Corporation RAID Manager has a code loophole, which stems from the Windows service’s registration of unquoted file paths, which may lead users with system drive root directory write permissions to execute any code with SYSTEM permission.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

Ceph

Published

2025-09-17

Last Modified

2026-02-24

References

https://jvn.jp/en/jp/JVN84697061/ https://www.century.co.jp/support/products-info/notice-r-m.html

Patch

https://www.century.co.jp/support/products-info/notice-r-m.html

Share on: