PT-2006-4819 · Unknown · My Firewall Plus
Published
2006-11-22
·
Updated
2018-10-17
·
CVE-2006-3973
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
My Firewall Plus version 5.0 Build 1119
Description
The issue allows local users to gain SYSTEM privileges due to the lack of verification of the
explorer.exe process before launching iexplore.exe from the "Test Your Firewall" feature.Recommendations
For My Firewall Plus version 5.0 Build 1119, consider disabling the "Test Your Firewall" feature until a patch is available to prevent potential exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
My Firewall Plus