CVE-2008-5049

Isecsoft Anti-keylogger Elite < 3.3.0 - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in AKEProtect.sys 3.3.3.0 in ISecSoft Anti-Keylogger Elite 3.3.0 and earlier, and possibly other versions including 3.3.3, allows local users to gain privileges via long inputs to the (1) 0x002224A4, (2) 0x002224C0, and (3) 0x002224CC IOCTL.

Exploits (1)

exploitdb WORKING POC VERIFIED
by NT Internals · textlocalwindows
https://www.exploit-db.com/exploits/7054

References (6)

Core 6
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/7054
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/4582
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/46465
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/32634
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/32202

Scores

EPSS 0.0032
EPSS Percentile 55.4%

Details

CWE
CWE-119
Status published
Products (1)
isecsoft/anti-keylogger_elite < 3.3.0
Published Nov 13, 2008
Tracked Since Feb 18, 2026