7.2
CVSSv2

CVE-2022-25949

Published: 17/03/2022 Updated: 23/03/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-based buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kingsoft internet security 9 plus 2010.06.23.247

Github Repositories

A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.

CVE-2022-25949 A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 200931777 2009? I reported the issue in January 2014 and was notified of the CVE 8+ years later I decided to upload this because it is amusing enough to find my old code and that it took that long Thus, this must not be a new vulnerability despite the new CVE -- a