Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7.6 - Exploits Update (Tue Oct 14 2008)

ZoneAlarm VSDATANT IOCTL Handler Privilege Escalation Exploit

Exploits/Local  [Windows]




• Tue Oct 14 2008
This module exploits a vulnerability in ZoneAlarm products when the 0x8400000F function is invoked with a specially crafted parameter. The IOCTL 0x8400000F handler in the VSDATANT.SYS device driver in ZoneAlarm products allows local users to overwrite memory and execute arbitrary code via malformed Interrupt Request Packet (Irp) parameters to obtain escalated privileges.

Exploits Vulnerabiltiy: CVE-2007-4216



< Back to Product Updates