[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2007-1537Date: (C)2007-03-20   (M)2023-12-22


DeviceNdisTapi (NDISTAPI.sys) in Microsoft Windows XP SP2 and 2003 SP1 uses weak permissions, which allows local users to write to the device and cause a denial of service, as demonstrated by using an IRQL to acquire a spinlock on paged memory via the NdisTapiDispatch function.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 3.6
Exploit Score: 3.9
Impact Score: 4.9
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: NONE
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
http://www.securityfocus.com/archive/1/463208/100/0/threaded
BID-23025
SECUNIA-24598
SREASON-2471
OSVDB-33628
ADV-2007-1031
http://www.reversemode.com/index.php?option=com_remository&Itemid=2&func=fileinfo&id=47
windows-ndistapi-dos(33086)

CPE    1
cpe:/o:microsoft:windows_xp::sp2

© SecPod Technologies