Vulnerabilities > CVE-2023-1186 - NULL Pointer Dereference vulnerability in Fabulatech Webcam for Remote Desktop 2.8.42

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
fabulatech
CWE-476

Summary

A vulnerability has been found in FabulaTech Webcam for Remote Desktop 2.8.42 and classified as problematic. This vulnerability affects the function 0x222010/0x222018 in the library ftwebcam.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. VDB-222358 is the identifier assigned to this vulnerability.

Vulnerable Configurations

Part Description Count
Application
Fabulatech
1
OS
Microsoft
1

Common Weakness Enumeration (CWE)