PT-2023-17025 · Lespeed Wisecleaner · Wise System Monitor
Zeze7W
·
Published
2023-03-18
·
Updated
2024-05-17
·
CVE-2023-1488
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Lespeed WiseCleaner Wise System Monitor version 1.5.3.54
Description
A problematic issue was found in the library WiseHDInfo64.dll of the component IoControlCode Handler, affecting an unknown function. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
Recommendations
For Lespeed WiseCleaner Wise System Monitor version 1.5.3.54, consider disabling the IoControlCode Handler component until a patch is available. Restrict access to the WiseHDInfo64.dll library to minimize the risk of exploitation. Avoid using the affected function in the IoControlCode Handler component until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wise System Monitor