CVE-2023-1186

LOW

FabulaTech Webcam for Remote Desktop 2.8.42 - Null Pointer Dereference in IOCTL Handler

Title source: llm
STIX 2.1

Description

A vulnerability has been found in FabulaTech Webcam for Remote Desktop 2.8.42 and classified as problematic. This vulnerability affects the function 0x222010/0x222018 in the library ftwebcam.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. VDB-222358 is the identifier assigned to this vulnerability.

References (3)

Core 3
Core References
Third Party Advisory vdb-entry technical-description
https://vuldb.com/?id.222358
Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.222358

Scores

CVSS v3 3.3
EPSS 0.0037
EPSS Percentile 28.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (1)
fabulatech/webcam_for_remote_desktop 2.8.42
Published Mar 06, 2023
Tracked Since Feb 18, 2026