Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary files in the system may be altered. As a result, an arbitrary DLL may be executed with SYSTEM privilege.
References
Configurations
No configuration.
History
06 Feb 2025, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-06 08:15
Updated : 2025-02-06 08:15
NVD link : CVE-2025-22894
Mitre link : CVE-2025-22894
CVE.ORG link : CVE-2025-22894
JSON object : View
Products Affected
No product.
CWE
CWE-422
Unprotected Windows Messaging Channel ('Shatter')