PT-2018-17410 · Max Secure · Max Secure Anti Virus

Published

2018-01-25

·

Updated

2018-02-07

·

CVE-2018-6206

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Max Secure Anti Virus version 19.0.3.019
Description The issue is related to the driver file MaxProtector32.sys, which does not validate input values from IOCtl 0x220011, allowing local users to cause a denial of service (BSOD) or possibly have unspecified other impact.
Recommendations For Max Secure Anti Virus version 19.0.3.019, consider disabling the MaxProtector32.sys driver as a temporary workaround until a patch is available.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-6206

Affected Products

Max Secure Anti Virus