7.2
CVSSv2

CVE-2010-2031

Published: 24/05/2010 Updated: 17/08/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

KAVSafe.sys 2010.4.14.609 and previous versions, as used in Kingsoft Webshield 3.5.1.2 and previous versions, allows local users to overwrite arbitrary kernel memory via a crafted request to IOCTL 0x830020d4 on the KAVSafe device.

Vulnerable Product Search on Vulmon Subscribe to Product

kingsoft webshield

Exploits

/* Kingsoft WebShield KAVSafesys <= 2010414609(2010523) Kernel Mode Local Privilege Escalation Vulnerability VULNERABLE PRODUCTS Kingsoft WebShield <= 3512 (2010523) Signature Date: 2010-5-23 2:33:54 And KAVSafesys <= 2010414609 Signature Date:2010-4-14 13:42:26 DETAILS: Kavsafesys create a device called \D ...