PT-2007-6083 · Sysinternals · Process Monitor

Published

2007-09-18

·

Updated

2018-10-15

·

CVE-2007-4969

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Process Monitor version 1.22
Description The issue concerns the improper validation of certain parameters to System Service Descriptor Table (SSDT) function handlers. This can be exploited by local users to cause a denial of service (crash) and possibly gain privileges. The vulnerability is related to unspecified kernel SSDT hooks for various Windows Native API functions, including NtCreateKey, NtDeleteValueKey, NtLoadKey, NtOpenKey, NtQueryValueKey, NtSetValueKey, and NtUnloadKey.
Recommendations For Process Monitor version 1.22, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-4969

Affected Products

Process Monitor