We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-0788

SUPERAntiSpyware Pro X v10.0.1260 - Kernel-level API parameters manipulation



AssignerFluid Attacks
Reserved2024-01-22
Published2024-01-29
Updated2024-09-05

Description

SUPERAntiSpyware Pro X v10.0.1260 is vulnerable to kernel-level API parameters manipulation and Denial of Service vulnerabilities by triggering the 0x9C402140 IOCTL code of the saskutil64.sys driver.



MEDIUM: 5.8CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H

Problem types

CWE-96: Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')

Product status

Default status
0x4002d6a3f0

10.0.1260
affected

References

https://fluidattacks.com/advisories/brubeck/ third-party-advisory

https://www.superantispyware.com/professional-x-edition.html product

cve.org CVE-2024-0788

nvd.nist.gov CVE-2024-0788

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-0788
Subscribe to our newsletter to learn more about our work.