Kaspersky Internet Security(KIS,卡巴斯基安全软件)是俄罗斯卡巴斯基实验室(Kaspersky Lab)研发的一套兼有杀毒软件和防火墙功能的安全软件。 Kaspersky Internet Security的klif.sys驱动实现上存在漏洞,本地攻击者可能利用此漏洞导致内核破坏。 Internet Security套件的klif.sys驱动hook了各种系统调用,如注册表函数,其中hook的_NtSetValueKey()函数存在整数溢出漏洞。如果向该函数的数据大小参数传输
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2007-1886 | PHP str_replace()函数整数溢出漏洞 | |
| CVE-2007-1881 | Kaspersky Anti-Virus 本地权限提升漏洞 | |
| CVE-2007-1879 | Kaspersky AntiVirus SysInfo ActiveX控件任意文件泄露漏洞 | |
| CVE-2007-1878 | FireBug跨站脚本执行漏洞 | |
| CVE-2007-1271 | VMware ESX Server缓冲区溢出漏洞 | |
| CVE-2007-1270 | VMware ESX Server Double free漏洞 | |
| CVE-2007-1112 | Kaspersky AntiVirus SysInfo ActiveX控件任意文件泄露漏洞 | |
| CVE-2007-1001 | Mac OS X PHP实现攻击漏洞 | |
| CVE-2007-0445 | Kaspersky AntiVirus杀毒引擎ARJ文档解析堆溢出漏洞 | |
| CVE-2007-1890 | PHP msg_receive()内存分配整数溢出漏洞 | |
| CVE-2007-1889 | PHP msg_receive()函数整数溢出漏洞 | |
| CVE-2007-1888 | PHP sqlite_udf_decode_binary()函数缓冲区溢出漏洞 | |
| CVE-2007-1887 | PHP sqlite_udf_decode_binary()函数提升权限漏洞 | |
| CVE-2007-0956 | MIT Kerberos 5 Telnet守护程序认证绕过漏洞 | |
| CVE-2007-1885 | PHP str_replace()函数整数溢出漏洞 | |
| CVE-2007-1884 | PHP Printf()函数多个整数符号类型错误漏洞 | |
| CVE-2007-1883 | PHP 敏感信息泄露漏洞 | |
| CVE-2007-1882 | HP Mercury Quality Center 'qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment' SQL注入漏洞 | |
| CVE-2007-1684 | SolidWorks SLDimdownload ActiveX控件任意程序执行漏洞 | |
| CVE-2007-1680 | 雅虎通音频会议ActiveX控件远程栈溢出漏洞 |
Showing top 20 of 26 CVEs. View all on vendor page → →
No comments yet