Vulnerabilities > CVE-2006-6952 - Products Drivers Multiple Local Privilege Escalation Vulenrabilities in Computer Associates

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
ca
exploit available

Summary

Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local users to gain privileges by using certain privileged IOCTLs to modify callback function pointers.

Exploit-Db

  • descriptionComputer Associates Personal Firewall 9.0 HIPS Driver (kmxstart.sys) Local Privilege Escalation. CVE-2006-6952. Local exploit for windows platform
    idEDB-ID:29070
    last seen2016-02-03
    modified2006-11-16
    published2006-11-16
    reporterRuben Santamarta
    sourcehttps://www.exploit-db.com/download/29070/
    titleComputer Associates Personal Firewall 9.0 - HIPS Driver kmxstart.sys Local Privilege Escalation
  • descriptionComputer Associates Personal Firewall 9.0 HIPS Driver (kmxfw.sys) Local Privilege Escalation. CVE-2006-6952. Local exploit for windows platform
    idEDB-ID:29069
    last seen2016-02-03
    modified2006-11-16
    published2006-11-16
    reporterRuben Santamarta
    sourcehttps://www.exploit-db.com/download/29069/
    titleComputer Associates Personal Firewall 9.0 - HIPS Driver kmxfw.sys Local Privilege Escalation