CVE-2018-18714

HIGH

Iobit Malware Fighter < 6.2 - Out-of-Bounds Write

Title source: rule
STIX 2.1

Description

RegFilter.sys in IOBit Malware Fighter 6.2 and earlier is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0x8006E010. This can lead to denial of service (DoS) or code execution with root privileges.

Exploits (1)

nomisec WORKING POC 6 stars
by DownWithUp · poc
https://github.com/DownWithUp/CVE-2018-18714

References (1)

Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://downwithup.github.io/CVEPosts.html

Scores

CVSS v3 7.8
EPSS 0.0172
EPSS Percentile 82.5%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (1)
iobit/malware_fighter < 6.2
Published Nov 01, 2018
Tracked Since Feb 18, 2026