7.2

CVE-2007-2965

Unspecified vulnerability in the Real-time Scanning component in multiple F-Secure products, including Internet Security 2005, 2006 and 2007; Anti-Virus 2005, 2006 and 2007; and Solutions based on F-Secure Protection Service for Consumers 6.40 and earlier allows local users to gain privileges via a crafted I/O request packet (IRP), related to IOCTL (Input/Output Control) and "access validation of the address space."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
F-secureF-secure Anti-virus Editionlinux_gateways Version <= 4.65
F-secureF-secure Anti-virus Editionlinux_servers Version <= 4.65
F-secureF-secure Anti-virus Editionwindows_servers Version <= 5.42
F-secureF-secure Anti-virus Editionworkstations Version <= 5.44
F-secureF-secure Anti-virus Editioncitrix_servers Version <= 5.52
F-secureF-secure Anti-virus Editionmimesweeper Version <= 5.61
F-secureF-secure Anti-virus Editionms_exchange Version <= 6.40
F-secureF-secure Anti-virus Version2005
F-secureF-secure Anti-virus Version2006
F-secureF-secure Anti-virus Version2007
F-secureF-secure Protection Service Editionconsumers Version <= 6.40
F-secureInternet Gatekeeper Editionlinux Version <= 2.16
F-secureInternet Gatekeeper Version <= 6.60
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.161
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C