PT-2007-6083 · Sysinternals · Process Monitor

Publicado

2007-09-18

·

Atualizado

2018-10-15

·

CVE-2007-4969

CVSS v2.0

4.4

Média

VetorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Process Monitor version 1.22
Description The issue concerns the improper validation of certain parameters to System Service Descriptor Table (SSDT) function handlers. This can be exploited by local users to cause a denial of service (crash) and possibly gain privileges. The vulnerability is related to unspecified kernel SSDT hooks for various Windows Native API functions, including NtCreateKey, NtDeleteValueKey, NtLoadKey, NtOpenKey, NtQueryValueKey, NtSetValueKey, and NtUnloadKey.
Recommendations For Process Monitor version 1.22, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-4969

Produtos afetados

Process Monitor