Vulnerabilities > Kyrolsecuritylabs

DATE CVE VULNERABILITY TITLE RISK
2019-11-21 CVE-2019-19197 Incorrect Permission Assignment for Critical Resource vulnerability in Kyrolsecuritylabs Kyrol Internet Security 9.0.6.9
IOCTL Handling in the kyrld.sys driver in Kyrol Internet Security 9.0.6.9 allows an attacker to achieve privilege escalation, denial-of-service, and code execution via usermode because 0x9C402401 using METHOD_NEITHER results in a read primitive.
local
low complexity
kyrolsecuritylabs CWE-732
7.8