CVE-2018-10809

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
08/05/2018
Last modified:
13/06/2018

Description

In 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00222040. NOTE: this vulnerability exists because of an incomplete fix for CVE-2018-8873.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:2345_security_guard_project:2345_security_guard:3.7:*:*:*:*:*:*:*