← Zuruck zu CVEs
CVE-2003-1233
CRITICAL9.8
Beschreibung
Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymbolicLinkObject function to create a symbolic link to (1) \Device\PhysicalMemory or (2) to a drive letter using the subst command.
CVE Details
CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht12/31/2003
Zuletzt geandert4/16/2026
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
pedestalsoftware:integrity_protection_driver
Schwachen (CWE)
CWE-59
Referenzen
http://secunia.com/advisories/7816(cve@mitre.org)
http://www.phrack.org/show.php?p=59&a=16(cve@mitre.org)
http://www.securityfocus.com/bid/6511(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/10979(cve@mitre.org)
http://archives.neohapsis.com/archives/bugtraq/2003-01/0017.html(af854a3a-2127-422b-91ae-364da2661108)
http://archives.neohapsis.com/archives/bugtraq/2003-01/0018.html(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/7816(af854a3a-2127-422b-91ae-364da2661108)
http://www.phrack.org/show.php?p=59&a=16(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/6511(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/10979(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.