Description
In MADEFORNET HTTP Debugger through 9.12, the Windows service does not set the seclevel registry key before launching the driver. Thus, it is possible for an unprivileged application to obtain a handle to the NetFilterSDK wrapper before the service obtains exclusive access.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-39856 | In MADEFORNET HTTP Debugger through 9.12, the Windows service does not set the seclevel registry key before launching the driver. Thus, it is possible for an unprivileged application to obtain a handle to the NetFilterSDK wrapper before the service obtains exclusive access. |
References
History
Wed, 20 Nov 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-20T21:53:20.770Z
Reserved: 2023-06-19T00:00:00.000Z
Link: CVE-2023-35863
Updated: 2024-08-02T16:30:45.471Z
Status : Modified
Published: 2023-07-05T18:15:10.420
Modified: 2024-11-21T08:08:51.477
Link: CVE-2023-35863
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD