7.1

CVE-2023-1453

Exploit

Watchdog Anti-Virus IoControlCode wsdk-driver.sys 0x80002008 access control

A vulnerability was found in Watchdog Anti-Virus 1.4.214.0. It has been rated as critical. Affected by this issue is the function 0x80002008 in the library wsdk-driver.sys of the component IoControlCode Handler. The manipulation leads to improper access controls. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. VDB-223298 is the identifier assigned to this vulnerability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WatchdogAnti-virus Version1.4.214.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.33% 0.243
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.1 1.8 5.2
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
cna@vuldb.com 4.4 1.8 2.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
cna@vuldb.com 3.2 3.1 4.9
AV:L/AC:L/Au:S/C:N/I:P/A:P
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

https://drive.google.com/file/d/1ivMk1uVAvPCCAxqiD2BW9gD1TsktQkpi/view
Exploit
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1453
Third Party Advisory
https://vuldb.com/?ctiid.223298
Third Party Advisory
VDB Entry
Permissions Required
https://vuldb.com/?id.223298
Third Party Advisory
VDB Entry
Permissions Required