7.2
CVSSv2

CVE-2014-9642

Published: 06/02/2015 Updated: 09/02/2015
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

bdagent.sys in BullGuard Antivirus, Internet Security, Premium Protection, and Online Backup prior to 15.0.288 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x0022405c IOCTL call.

Vulnerable Product Search on Vulmon Subscribe to Product

bullguard bdagent.sys

bullguard internet_security

bullguard online_backup

bullguard premium_protection

Exploits

/* Exploit Title - BullGuard Multiple Products Arbitrary Write Privilege Escalation Date - 04th February 2015 Discovered by - Parvez Anwar (@parvezghh) Vendor Homepage - wwwbullguardcom/ Tested Version - 1412854 Driver Version - 1006 - BdAgentsys Tested on OS - 32bit Windows XP SP3 OSVDB - htt ...
Multiple products from BullGuard suffer from an arbitrary write privilege escalation vulnerability ...