Kerio Personal Firewall 4.0 (KPF4) allows local users with administrative privileges to bypass the Application Security feature and execute arbitrary processes by directly writing to \device\physicalmemory to restore the running kernel's SDT ServiceTable.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kerio personal firewall 4.0.7 |
||
kerio personal firewall 4.0.8 |
||
kerio personal firewall 4.0.10 |
||
kerio personal firewall 4.0.16 |
||
kerio personal firewall 4.0.6 |
||
kerio personal firewall 4.0.9 |