Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-28922

Опубликовано: 27 нояб. 2020
Источник: nvd
CVSS3: 8.8
CVSS2: 7.2
EPSS Низкий

Описание

An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write arbitrary physical memory. This could lead to arbitrary Ring-0 code execution and escalation of privileges.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:pcanalyser:pc_analyser:*:*:*:*:*:*:*:*
Версия до 4.10 (включая)

EPSS

Процентиль: 21%
0.00068
Низкий

8.8 High

CVSS3

7.2 High

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write arbitrary physical memory. This could lead to arbitrary Ring-0 code execution and escalation of privileges.

EPSS

Процентиль: 21%
0.00068
Низкий

8.8 High

CVSS3

7.2 High

CVSS2

Дефекты

NVD-CWE-noinfo