CVE-2023-1007

A vulnerability was found in Twister Antivirus 8.17. It has been declared as critical. This vulnerability affects unknown code in the library filmfd.sys of the component IoControlCode Handler. The manipulation leads to improper access controls. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-221740.
References
Link Resource
https://drive.google.com/file/d/1wh20g2Ze4gwCtripe7QeHNXd3bS4aZNG/view?usp=sharing Broken Link
https://vuldb.com/?ctiid.221740 Permissions Required Third Party Advisory
https://vuldb.com/?id.221740 Permissions Required Third Party Advisory
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1007 Exploit Patch Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:filseclab:twister_antivirus:8.17:*:*:*:*:*:*:*

Information

Published : 2023-02-24 03:15

Updated : 2023-03-03 09:13


NVD link : CVE-2023-1007

Mitre link : CVE-2023-1007


JSON object : View

CWE
CWE-284

Improper Access Control

Advertisement

dedicated server usa

Products Affected

filseclab

  • twister_antivirus