CVE-2005-2145
Summary
| CVE | CVE-2005-2145 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-07-05 04:00:00 UTC |
| Updated | 2008-09-05 20:51:00 UTC |
| Description | The kernel driver in Prevx Pro 2005 1.0 does not verify the source of certain messages, which allows local users to bypass protection by sending certain messages to the driver, as demonstrated by sending an "allow" message to bypass a warning message. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Prevx | Prevx Pro 2005 | 1.0 | All | All | All |
| Application | Prevx | Prevx Pro 2005 | 1.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Prevx Pro 2005 Intrusion Prevention Feature Bypass - Secunia Advisories - Vulnerability Intelligence - Secunia.com | SECUNIA | secunia.com | Vendor Advisory |
| Prevx Pro Lets Local Users Modify Files and Spoof Driver Messages - SecurityTracker | SECTRACK | securitytracker.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.