Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2017-14961

Description

In IKARUS anti.virus 2.16.7, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x8300000c.

POC

Reference

- http://packetstormsecurity.com/files/144955/IKARUS-AntiVirus-2.16.7-Privilege-Escalation.html

- https://www.exploit-db.com/exploits/43139/

Github

- https://github.com/0xcyberpj/windows-exploitation

- https://github.com/0xpetros/windows-privilage-escalation

- https://github.com/FULLSHADE/WindowsExploitationResources

- https://github.com/MustafaNafizDurukan/WindowsKernelExploitationResources

- https://github.com/NitroA/windowsexpoitationresources

- https://github.com/NullArray/WinKernel-Resources

- https://github.com/TamilHackz/windows-exploitation

- https://github.com/lsc1226844309/hanker1