Lucene search

K
cveMitreCVE-2006-6618
HistoryDec 18, 2006 - 11:28 a.m.

CVE-2006-6618

2006-12-1811:28:00
mitre
web.nvd.nist.gov
23
antihook
process environment block
peb
local users
bypass
security vulnerability

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

9.5%

AntiHook 3.0.0.23 - Desktop relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product’s controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

Affected configurations

Nvd
Node
avgantivirus_plus_firewallMatch7.5.431
OR
comodocomodo_personal_firewallMatch2.3.6.81
OR
filseclabpersonal_firewallMatch3.0.8686
OR
infoprocessantihookMatch3.0.23
OR
soft4everlook_n_stopMatch2.05p2
OR
symantecsygate_personal_firewallMatch5.6.2808
VendorProductVersionCPE
avgantivirus_plus_firewall7.5.431cpe:2.3:a:avg:antivirus_plus_firewall:7.5.431:*:*:*:*:*:*:*
comodocomodo_personal_firewall2.3.6.81cpe:2.3:a:comodo:comodo_personal_firewall:2.3.6.81:*:*:*:*:*:*:*
filseclabpersonal_firewall3.0.8686cpe:2.3:a:filseclab:personal_firewall:3.0.8686:*:*:*:*:*:*:*
infoprocessantihook3.0.23cpe:2.3:a:infoprocess:antihook:3.0.23:*:*:*:*:*:*:*
soft4everlook_n_stop2.05p2cpe:2.3:a:soft4ever:look_n_stop:2.05p2:*:*:*:*:*:*:*
symantecsygate_personal_firewall5.6.2808cpe:2.3:a:symantec:sygate_personal_firewall:5.6.2808:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

9.5%

Related for CVE-2006-6618