header-logo
Suggest Exploit
vendor:
BullGuard Multiple Products
by:
Parvez Anwar
7.5
CVSS
HIGH
Arbitrary Write Privilege Escalation
264
CWE
Product Name: BullGuard Multiple Products
Affected Version From: 14.1.285.4
Affected Version To: 15.0.288.1
Patch Exists: YES
Related CWE: CVE-2014-9642
CPE: a:bullguard:bullguard
Metasploit:
Other Scripts:
Platforms Tested: Windows
2015

BullGuard Multiple Products Arbitrary Write Privilege Escalation

This vulnerability allows an attacker to escalate privileges by overwriting the HAL dispatch table. By controlling the input buffer, the attacker can overwrite pointers in the table, which can be used to execute arbitrary code or gain elevated privileges. The vulnerability was discovered by Parvez Anwar and affects multiple BullGuard products. The affected versions range from 14.1.285.4 to 15.0.288.1. The vulnerability has a CVE ID of CVE-2014-9642. The vendor has released a fix for this vulnerability, which can be found at the provided URL. The fixed version is 15.0.288.1. The exploit was tested on a 32-bit Windows XP SP3 system. The vulnerability can be mitigated by updating to the fixed version of the software.

Mitigation:

Update to the fixed version of the software (15.0.288.1).
Source

Exploit-DB raw data: