9.3
CVSSv3

CVE-2015-4523

Published: 11/09/2017 Updated: 03/10/2018
CVSS v2 Base Score: 9 | Impact Score: 8.5 | Exploitability Score: 10
CVSS v3 Base Score: 9.3 | Impact Score: 6 | Exploitability Score: 2.5
VMScore: 905
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:C

Vulnerability Summary

Blue Coat Malware Analysis Appliance (MAA) prior to 4.2.5 and Malware Analyzer G2 allow remote malicious users to bypass a virtual machine protection mechanism and consequently write to arbitrary files, cause a denial of service (host reboot or reset to factory defaults), or execute arbitrary code via vectors related to saving files during analysis.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec malware analyzer g2

symantec malware analysis appliance

Exploits

## # This module requires Metasploit: http//metasploitcom/download # Current source: githubcom/rapid7/metasploit-framework ## require 'msf/core' require 'rex' class Metasploit3 < Msf::Exploit::Local Rank = AverageRanking DEVICE = '\\\\\\VBoxGuest' INVALID_HANDLE_VALUE = 0xFFFFFFFF # VBOX HGCM protocol constan ...