7.2
CVE-2006-4926
- EPSS 0.31%
- Published 20.10.2006 22:07:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The NDIS-TDI Hooking Engine, as used in the (1) KLICK (KLICK.SYS) and (2) KLIN (KLIN.SYS) device drivers 2.0.0.281 for in Kaspersky Labs Anti-Virus 6.0.0.303 and other Anti-Virus and Internet Security products, allows local users to execute arbitrary code via crafted Irp structure with invalid addresses in the 0x80052110 IOCTL.
Data is provided by the National Vulnerability Database (NVD)
Kaspersky Lab ≫ Kaspersky Anti-virus Version5.0 Editionwindows_workstations
Kaspersky Lab ≫ Kaspersky Anti-virus Version6.0 Editionworkstations
Kaspersky Lab ≫ Kaspersky Anti-virus Personal Version5.0
Kaspersky Lab ≫ Kaspersky Anti-virus Personal Pro Version5.0
Kaspersky Lab ≫ Kaspersky Internet Security Version6.0 Updatemaintenance_pack_2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.31% | 0.534 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|