6.9
CVSSv2

CVE-2010-1592

Published: 28/04/2010 Updated: 29/04/2010
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

sandra.sys 15.18.1.1 and previous versions in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and previous versions allows local users to gain privileges or cause a denial of service (system crash) via unspecified vectors involving "Model-Specific Registers."

Vulnerable Product Search on Vulmon Subscribe to Product

sisoftware sandra

Recent Articles

The Slingshot APT FAQ
Securelist • Alexey Shulmin Sergey Yunakovsky Vasily Berdnikov Andrey Dolgushev • 09 Mar 2018

While analysing an incident which involved a suspected keylogger, we identified a malicious library able to interact with a virtual file system, which is usually the sign of an advanced APT actor. This turned out to be a malicious loader internally named ‘Slingshot’, part of a new, and highly sophisticated attack platform that rivals Project Sauron and Regin in complexity. The initial loader replaces the victim´s legitimate Windows library ‘scesrv.dll’ with a malicious one of exactly th...