Lucene search

K
cveMitreCVE-2007-1051
HistoryFeb 21, 2007 - 11:28 p.m.

CVE-2007-1051

2007-02-2123:28:00
mitre
web.nvd.nist.gov
35
comodo firewall
crc32
module identification
security bypass
weak hashing function
nvd

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

26.1%

Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.17.183 and earlier uses a weak cryptographic hashing function (CRC32) to identify trusted modules, which allows local users to bypass security protections by substituting modified modules that have the same CRC32 value.

Affected configurations

Nvd
Node
comodocomodo_firewall_proRange2.4.17.183
VendorProductVersionCPE
comodocomodo_firewall_pro*cpe:2.3:a:comodo:comodo_firewall_pro:*:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

26.1%

Related for CVE-2007-1051