CNNVD-202510-1321 Information

CNNVD ID

CNNVD-202510-1321

CVE-2017-20203

  • CNNVD Published: 2025-10-09

Description (Chinese)

NetSarang Xshell等都是美国NetSarang公司的产品。NetSarang Xshell是NetSarang Xmanager是一个功能强大、方便的 PC X 服务器软件包。NetSarang XLPD是远程打印工具。 NetSarang多款产品存在安全漏洞,该漏洞源于恶意nssock2.dll实现基于DNS的多阶段后门,可能导致远程代码执行和数据渗漏。以下产品及版本受到影响:NetSarang Xmanager Enterprise 5.0 Build 1232版本、Xmanager 5.0 Build 1045版本、Xshell 5.0 Build 1322版本、Xftp 5.0 Build 1218版本和Xlpd 5.0 Build 1220版本。

Description (English)

NetSarang Xshell and others are products of the United States company NetSarang. NetSarang Xshell is NetSarang Xmanager, a powerful and convenient PC X server software package. NetSarang XLPD is a remote printing tool. NetSarang has a safety gap in a number of products, which stems from malice nssock2.dll to achieve a multistage DNS-based back door, which may lead to remote code implementation and data leakage. The following products and versions were affected: NetSarang Xmanager Enterprise 5.0 Build 1232, Xmanager 5.0 Build 1045, Xshell 5.0 Build 1322, Xftp 5.0 Build 1218 and Xlpd 5.0 Build 1220.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

NetSarang

Published

2025-10-09

Last Modified

2026-02-24

References

https://securelist.com/shadowpad-in-corporate-networks/81432/ https://usa.kaspersky.com/about/press-releases/shadowpad-attackers-hid-backdoor-in-software-used-by-hundreds-of-large-companies-worldwide https://www.netsarang.com/news/security_exploit_in_july_18_2017_build.html https://web.archive.org/web/20181022035109/ https://www.vulncheck.com/advisories/netsarang-malicious-backdoor-supply-chain-compromise https://access.redhat.com/security/cve/cve-2017-20203

Share on: