Vulnerabilities > PGP > Desktop > High

DATE CVE VULNERABILITY TITLE RISK
2009-04-15 CVE-2009-0681 Improper Input Validation vulnerability in PGP Desktop 8.0/9.0/9.0.6
PGP Desktop before 9.10 allows local users to (1) cause a denial of service (crash) via a crafted IOCTL request to pgpdisk.sys, and (2) cause a denial of service (crash) and execute arbitrary code via a crafted IRP in an IOCTL request to pgpwded.sys.
local
low complexity
pgp CWE-20
7.2