7.2

CVE-2008-1471

Exploit

The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or kernel panic), overwrite memory, or execute arbitrary code via a crafted IOCTL request that triggers an out-of-bounds write of kernel memory.

Data is provided by the National Vulnerability Database (NVD)
PandaPanda Antivirus And Firewall Version2008
   MicrosoftWindows-nt Versionvista Editionx32
   MicrosoftWindows-nt Versionxp Editionx32
   MicrosoftWindows 2000 Editionpro
   MicrosoftWindows Vista Editionx64
   MicrosoftWindows Xp Editionx64
PandaPanda Internet Security Version2008
   MicrosoftWindows-nt Versionvista Editionx32
   MicrosoftWindows-nt Versionxp Editionx32
   MicrosoftWindows 2000 Editionpro
   MicrosoftWindows Vista Editionx64
   MicrosoftWindows Xp Editionx64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.25% 0.486
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C