CVE-2014-4973

Severity
6.9MEDIUM
EPSS
0.1%
top 80.69%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 23
Latest updateMay 17

Description

The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smart Security and ESET Endpoint Security products 5.0 through 7.0 allows local users to gain privileges via a crafted argument to a 0x830020CC IOCTL call.

CVSS vector

AV:L/AC:M/C:C/I:C/A:CExploitability: 3.4 | Impact: 10.0

Affected Packages2 packages

NVDeset/smart_security8 versions+7
NVDeset/endpoint_security6 versions+5

🔴Vulnerability Details

2
GHSA
GHSA-c3vj-ww23-q48f: The ESET Personal Firewall NDIS filter (EpFwNdis2022-05-17
CVEList
CVE-2014-4973: The ESET Personal Firewall NDIS filter (EpFwNdis2014-09-23
CVE-2014-4973 (MEDIUM CVSS 6.9) | The ESET Personal Firewall NDIS fil | cvebase.io