vendor:
Regmon
by:
Next Generation Security S.L.
5.5
CVSS
MEDIUM
Local Denial of Service
400
CWE
Product Name: Regmon
Affected Version From: 6.11 for NT/9x and prior versions
Affected Version To: 6.11
Patch Exists: NO
Related CWE:
CPE: a:sysinternals:regmon:6.11
Platforms Tested: Windows
2004
Regmon local denial of service vulnerability
The Regmon application fails to handle exceptional conditions and references unvalidated pointers to kernel functions, allowing a local unauthorized attacker to cause a denial of service condition in the application. The attacker may then obfuscate changes to the registry from the administrator and carry out further attacks against a vulnerable computer.
Mitigation:
Update to the latest version of Regmon or apply any patches or security updates provided by the vendor.