RSS   Vulnerabilities for 'Ram disk'   RSS

2020-08-04
 
CVE-2020-13522

CWE-20
 

 
An exploitable arbitrary file delete vulnerability exists in SoftPerfect RAM Disk 4.1 spvve.sys driver. A specially crafted I/O request packet (IRP) can allow an unprivileged user to delete any file on the filesystem. An attacker can send a malicious IRP to trigger this vulnerability.

 
 
CVE-2020-13523

CWE-200
 

 
An exploitable information disclosure vulnerability exists in SoftPerfect�??s RAM Disk 4.1 spvve.sys driver. A specially crafted I/O request packet (IRP) can cause the disclosure of sensitive information. An attacker can send a malicious IRP to trigger this vulnerability.

 


Copyright 2024, cxsecurity.com

 

Back to Top