Soft4Ever Look 'n' Stop (LnS) 2.05p2 before 20061215 relies on...
Vulnerability Description
Soft4Ever Look 'n' Stop (LnS) 2.05p2 before 20061215 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-6622
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.matousec.com/info/advisories/Bypassing-process-identification-serveral-personal-firewalls-HIPS.php
- http://www.securityfocus.com/archive/1/454522/100/0/threaded
- http://www.securityfocus.com/bid/21615
- http://www.wilderssecurity.com/showthread.php?t=158155
- http://www.matousec.com/downloads/windows-personal-firewall-analysis/ex-coat.zip
More from avg
View All →Affected Vendor
Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.