7.5
CVSSv2

CVE-2014-9633

Published: 03/02/2015 Updated: 04/02/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The bdisk.sys driver in COMODO Backup prior to 4.4.1.23 allows remote malicious users to gain privileges via a crafted device handle, which triggers a NULL pointer dereference.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

comodo backup

Exploits

/* Exploit Title - Comodo Backup Null Pointer Dereference Privilege Escalation Date - 23rd January 2015 Discovered by - Parvez Anwar (@parvezghh) Vendor Homepage - wwwcomodocom Tested Version - 4400 Driver Version - 100957 - bdisksys Tested on OS - 32bit Windows XP SP3 and Windows 7 SP1 OSVDB ...
Comodo Backup version 4400 suffers from a NULL pointer dereference vulnerability ...