Vulnerabilities > CVE-2022-37415 - Out-of-bounds Write vulnerability in Uniwill Sparkio.Sys 1.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
uniwill
CWE-787

Summary

The Uniwill SparkIO.sys driver 1.0 is vulnerable to a stack-based buffer overflow via IOCTL 0x40002008.

Vulnerable Configurations

Part Description Count
Application
Uniwill
1

Common Weakness Enumeration (CWE)