[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96078

 
 

909

 
 

78009

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2007-4277

Date: (C)2007-10-30   (M)2015-12-16
 
CVSS Score: 6.6Access Vector: LOCAL
Exploitability Subscore: 3.9Access Complexity: LOW
Impact Subscore: 9.2Authentication: NONE
 Confidentiality: NONE
 Integrity: COMPLETE
 Availability: COMPLETE











The Trend Micro AntiVirus scan engine before 8.550-1001, as used in Trend Micro PC-Cillin Internet Security 2007, and Tmxpflt.sys 8.320.1004 and 8.500.0.1002, has weak permissions (Everyone:Write) for the \\.\Tmfilter device, which allows local users to send arbitrary content to the device via the IOCTL functionality. NOTE: this can be leveraged for privilege escalation by exploiting a buffer overflow in the handler for IOCTL 0xa0284403.

Reference:
SECTRACK-1018863
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=609
BID-26209
SECUNIA-27378
ADV-2007-3627
http://esupport.trendmicro.com/support/viewxml.do?ContentID=1035793
http://esupport.trendmicro.com/support/viewxml.do?ContentID=1036190

CWE    1
CWE-119

© 2013 SecPod Technologies