PT-2023-17025 · Lespeed Wisecleaner · Wise System Monitor

Zeze7W

·

Published

2023-03-18

·

Updated

2024-05-17

·

CVE-2023-1488

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Lespeed WiseCleaner Wise System Monitor version 1.5.3.54
Description A problematic issue was found in the library WiseHDInfo64.dll of the component IoControlCode Handler, affecting an unknown function. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
Recommendations For Lespeed WiseCleaner Wise System Monitor version 1.5.3.54, consider disabling the IoControlCode Handler component until a patch is available. Restrict access to the WiseHDInfo64.dll library to minimize the risk of exploitation. Avoid using the affected function in the IoControlCode Handler component until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Improper Resource Release

Weakness Enumeration

Related Identifiers

CVE-2023-1488

Affected Products

Wise System Monitor