CVE-2007-0708

Comodo Firewall Pro <2.4.16.174 - DoS

Title source: llm

Description

cmdmon.sys in Comodo Firewall Pro (formerly Comodo Personal Firewall) before 2.4.16.174 does not validate arguments that originate in user mode for the (1) NtConnectPort and (2) NtCreatePort hooked SSDT functions, which allows local users to cause a denial of service (system crash) and possibly gain privileges via invalid arguments.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Matousec Transparent security · cdoswindows
https://www.exploit-db.com/exploits/29558

Scores

EPSS 0.0016
EPSS Percentile 36.9%

Details

Status published
Products (1)
comodo/comodo_firewall_pro 2.4.16.174
Published Feb 04, 2007
Tracked Since Feb 18, 2026