Vulnerabilities > Kingsoft > Internet Security 9 Plus

DATE CVE VULNERABILITY TITLE RISK
2022-03-17 CVE-2022-25949 Out-of-bounds Write vulnerability in Kingsoft Internet Security 9 Plus 2010.06.23.247
The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-based buffer overflow.
local
low complexity
kingsoft CWE-787
7.2
2018-03-30 CVE-2018-9151 NULL Pointer Dereference vulnerability in Kingsoft Internet Security 9 Plus 2010.06.23.247
A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allows local non-privileged users to crash the system via IOCTL 0x80030030.
local
low complexity
kingsoft CWE-476
4.9