CVE-2015-1515

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
19/02/2015
Last modified:
12/04/2025

Description

The dwall.sys driver in SoftSphere DefenseWall Personal Firewall 3.24 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222000, 0x00222004, 0x00222008, 0x0022200c, or 0x00222010 IOCTL call.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:softsphere:defensewall_personal_firewall:3.24:*:*:*:*:*:*:*