CNNVD-202512-5573 Information

CNNVD ID

CNNVD-202512-5573

CVE-2025-64699

  • CNNVD Published: 2025-12-31

Description (Chinese)

SevenCs ORCA G2是德国SevenCs公司的一个电子海图系统。 SevenCs ORCA G2 2.0.1.35版本存在安全漏洞,该漏洞源于regService进程应用了无显式配置DACL的安全描述符,可能导致系统中断、敏感数据泄露和本地权限提升。

Description (English)

SevenCs ORCA G2 is an electronic charting system of the German company SevenCs. The security loophole in version SevenCs OCCA G2 2.0.1.35 stems from the application of the RegService process to the security description of the non-visible configuration of DACL, which may lead to system disruption, sensitive data leaks and local rights enhancement.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

SevenCs

Published

2025-12-31

Last Modified

2026-02-24

References

https://gist.github.com/GunP4ng/42b19ee99e94c315173b74a9fb26c2b9

Share on: