Hitmanpro.alert
by Sophos
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-9540 | Hig | 0.51 | 7.8 | 0.00 | Mar 2, 2020 | Sophos HitmanPro.Alert before build 861 allows local elevation of privilege. | ||
| CVE-2018-3971 | Hig | 0.51 | 7.8 | 0.01 | Oct 25, 2018 | An exploitable arbitrary write vulnerability exists in the 0x2222CC IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A specially crafted IRP request can cause the driver to write data under controlled by an attacker address, resulting in memory corruption. An… | ||
| CVE-2021-25270 | Med | 0.44 | 6.7 | 0.00 | Oct 8, 2021 | A local attacker could execute arbitrary code with administrator privileges in HitmanPro.Alert before version Build 901. | ||
| CVE-2018-3970 | Med | 0.36 | 5.5 | 0.00 | Oct 25, 2018 | An exploitable memory disclosure vulnerability exists in the 0x222000 IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A specially crafted IRP request can cause the driver to return uninitialized memory, resulting in kernel memory disclosure. An attacker can send… |
- risk 0.51cvss 7.8epss 0.00
Sophos HitmanPro.Alert before build 861 allows local elevation of privilege.
- risk 0.51cvss 7.8epss 0.01
An exploitable arbitrary write vulnerability exists in the 0x2222CC IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A specially crafted IRP request can cause the driver to write data under controlled by an attacker address, resulting in memory corruption. An…
- risk 0.44cvss 6.7epss 0.00
A local attacker could execute arbitrary code with administrator privileges in HitmanPro.Alert before version Build 901.
- risk 0.36cvss 5.5epss 0.00
An exploitable memory disclosure vulnerability exists in the 0x222000 IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A specially crafted IRP request can cause the driver to return uninitialized memory, resulting in kernel memory disclosure. An attacker can send…