header-logo
Suggest Exploit
vendor:
Internet Security Pro 2009
by:
b1@ckeYe
7.2
CVSS
HIGH
Privilege Escalation
N/A
CWE
Product Name: Internet Security Pro 2009
Affected Version From: Trend Micro Internet Security Pro 2009
Affected Version To: Trend Micro Internet Security Pro 2009
Patch Exists: N/A
Related CWE: N/A
CPE: a:trend_micro:internet_security_pro_2009
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009

Trend Micro Internet Security Pro 2009 tmactmon.sys Priviliege Escalation PoC

The vulnerability is caused due to the IOCTL handler of the "tmactmon.sys" driver improperly processing user space parameters. This exploit execute arbitrary code in kernel space via a specially crafted IOCTL.

Mitigation:

N/A
Source

Exploit-DB raw data:

Trend Micro Internet Security Pro 2009 tmactmon.sys Priviliege Escalation PoC.
by b1@ckeYe

The vulnerability is caused due to the IOCTL handler of the "tmactmon.sys" 
driver improperly processing user space parameters. This exploit execute 
arbitrary code in kernel space via a specially crafted IOCTL.

untested: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/8322.zip 2009-trendmicro_local_expl_0day.zip)

# milw0rm.com [2009-03-30]