PT-2023-16994 · Unknown · Watchdog Anti-Virus
Zeze7W
·
Published
2023-03-17
·
Updated
2024-05-17
·
CVE-2023-1453
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Watchdog Anti-Virus version 1.4.214.0
Description
A critical issue has been found, affecting the function in the library wsdk-driver.sys of the component IoControlCode Handler, leading to improper access controls. The manipulation requires a local attack. The issue has been publicly disclosed and may be exploited.
Recommendations
For Watchdog Anti-Virus version 1.4.214.0, as a temporary workaround, consider restricting access to the IoControlCode Handler component until a patch is available. At the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Watchdog Anti-Virus