Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ProSecurity 1.40 Beta 2 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via kernel SSDT hooks for Windows Native API functions including (1) NtCreateKey, (2) NtDeleteFile, (3) NtLoadDriver, (4) NtOpenSection, and (5) NtSetSystemTime.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ISecSoft ISecSoft ProSecurity 输入验证漏洞
Vulnerability Description
ProSecurity 1.40 Beta 2不能正确确认System Service Descriptor Table (SSDT)函数处理者的特定参数,本地用户可以借助包含(1) NtCreateKey, (2) NtDeleteFile, (3) NtLoadDriver, (4) NtOpenSection,和(5) NtSetSystemTime的Windows Native API函数的核心SSDT钩子造成拒绝服务(崩溃)并可能获得特权。
CVSS Information
N/A
Vulnerability Type
N/A