7.2
CVSSv2

CVE-2008-5121

Published: 18/11/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

dne2000.sys in Citrix Deterministic Network Enhancer (DNE) 2.21.7.233 up to and including 3.21.7.17464, as used in (1) Cisco VPN Client, (2) Blue Coat WinProxy, and (3) SafeNet SoftRemote and HighAssurance Remote, allows local users to gain privileges via a crafted DNE_IOCTL DeviceIoControl request to the \\.\DNE device interface.

Vulnerable Product Search on Vulmon Subscribe to Product

citrix deterministic_network_enhancer 3.21.7.17464

citrix deterministic_network_enhancer 2.21.7.223

Exploits

/* dne2000-callc * * Copyright (c) 2008 by <mu-b@digit-labsorg> * * Deterministic Network Enhancer (dne2000sys) local kernel ring0 SYSTEM exploit * by mu-b - Sun 06 Jan 2008 * * - Tested on: dne2000sys 2217233 <-> 321717464 * bundled with: SafeNET HighAssurance Remote, SoftRemote * Cisco VPN Clie ...