Lucene search

K
cveVulDBCVE-2023-1008
HistoryFeb 24, 2023 - 11:15 a.m.

CVE-2023-1008

2023-02-2411:15:10
CWE-404
VulDB
web.nvd.nist.gov
34
twister antivirus
8.17
vulnerability
denial of service
iocontrolcode handler
cve-2023-1008
nvd

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

26.3%

A vulnerability was found in Twister Antivirus 8.17. It has been rated as problematic. This issue affects the function 0x801120E4 in the library filmfd.sys of the component IoControlCode Handler. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier VDB-221741 was assigned to this vulnerability.

Affected configurations

Nvd
Vulners
Node
filseclabtwister_antivirusMatch8.17
VendorProductVersionCPE
filseclabtwister_antivirus8.17cpe:2.3:a:filseclab:twister_antivirus:8.17:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "Twister",
    "product": "Antivirus",
    "versions": [
      {
        "version": "8.17",
        "status": "affected"
      }
    ],
    "modules": [
      "IoControlCode Handler"
    ]
  }
]

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

26.3%

Related for CVE-2023-1008