CVE-2014-4973

The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smart Security and ESET Endpoint Security products 5.0 through 7.0 allows local users to gain privileges via a crafted argument to a 0x830020CC IOCTL call.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.9 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
VendorProductVersion
esetsmart_security
5.0.94
esetsmart_security
5.0.95
esetsmart_security
5.2.9
esetsmart_security
5.2.15
esetsmart_security
6.0.306
esetsmart_security
6.0.308
esetsmart_security
6.0.314
esetsmart_security
6.0.316
esetendpoint_security
5.0.2113
esetendpoint_security
5.0.2122
esetendpoint_security
5.0.2126
esetendpoint_security
5.0.2214
esetendpoint_security
5.0.2225
esetendpoint_security
5.0.2228
𝑥
= Vulnerable software versions