Vulnerability CVE-2009-2647


Published: 2009-07-30   Modified: 2012-02-13

Description:
Unspecified vulnerability in Kaspersky Anti-Virus 2010 and Kaspersky Internet Security 2010 before Critical Fix 9.0.0.463 allows remote attackers to disable the Kaspersky application via unknown attack vectors unrelated to "an external script."

Type:

CWE-noinfo

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5/10
2.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
None
Partial
Affected software
Kaspersky -> Kaspersky anti-virus 
Kaspersky -> Kaspersky internet security 

 References:
http://xforce.iss.net/xforce/xfdb/51986
http://www.vupen.com/english/advisories/2009/1998
http://www.securityfocus.com/bid/35789
http://www.kaspersky.com/technews?id=203038755
http://secunia.com/advisories/35978
http://osvdb.org/56351

Copyright 2024, cxsecurity.com

 

Back to Top