← Back

CVE-2007-4971

nvd nist
Published: Sep 19, 2007Modified: Apr 23, 2026

JSON object

Loading...
4.4
Vector
AV:L/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 3.4 / Impact: 6.4
Source: NVD

Description

ProSecurity 1.40 Beta 2 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via kernel SSDT hooks for Windows Native API functions including (1) NtCreateKey, (2) NtDeleteFile, (3) NtLoadDriver, (4) NtOpenSection, and (5) NtSetSystemTime.

Affected (1)

1 product
Prosecurity
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.40_beta_2

Timeline

No history available yet.