Sunbelt Kerio个人防火墙是一个简单的基于规则设置的防火墙安全防护软件。 Sunbelt Kerio个人防火墙hook了SSDT中的很多函数,其中至少有6种情况可能没有验证用户模式的参数。由于fwdrv.sys和khips.sys驱动中的错误,如果使用无效参数值调用了NtCreateFile、NtDeleteFile、NtLoadDriver、NtMapViewOfSection、NtOpenFile或NtSetInformationFile的话,就会导致系统崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2006-5151 | HP-UX Ignite-UX远程非授权访问及权限提升漏洞 | |
| CVE-2006-5152 | Microsoft Internet Explorer 跨站脚本攻击漏洞 | |
| CVE-2006-5154 | DeluxeBB 'sig.php'远程文件包含漏洞 | |
| CVE-2006-5155 | VideoDB 'PDF.PHP'远程文件包含漏洞 | |
| CVE-2006-5156 | McAfee EPolicy Orchestrator和ProtectionPilot HTTP Server远程缓冲区溢出漏洞 | |
| CVE-2006-5157 | Trend Micro OfficeScan 'ATXCONSOLE.OCX' ActiveX控件格式串处理漏洞 | |
| CVE-2006-5158 | Linux Kernel NFS锁定管理拒绝服务漏洞 | |
| CVE-2006-5159 | Mozilla Firefox 基于堆栈的缓冲区溢出漏洞 | |
| CVE-2006-5160 | 已注销:Mozilla Firefox多个未指定的Javascript漏洞 | |
| CVE-2006-5161 | IBM客户端安全密码管理器认证信息泄露漏洞 | |
| CVE-2006-5162 | Microsoft IE超长Content-Type字段处理'wininet.dll'拒绝服务漏洞 | |
| CVE-2006-5163 | IBM Informix Dynamic Server '/tmp/installserver.txt'符号链接漏洞 |
No comments yet