CVE-2007-2729 (CNNVD-200705-325)
中文标题:
Comodo Firewall Pro 和Comodo Personal Firewall API函数安全权限漏洞
英文标题:
Comodo Firewall Pro 2.4.18.184 and Comodo Personal Firewall 2.3.6.81, and probably older Comodo Fire...
漏洞描述
中文描述:
Comodo Firewall Pro 和Comodo Personal Firewall以及可能更早的Comodo Firewall版本没有为NT kernel 5.0中的特定的Microsoft Windows API函数的进程标示符进行正确的等值测试,这使得本地用户可以借助一个畸形的标示符,调用这些函数和绕过防火墙规则或获得特权。这些畸形的标示符比标准标示符大一、二或三。
英文描述:
Comodo Firewall Pro 2.4.18.184 and Comodo Personal Firewall 2.3.6.81, and probably older Comodo Firewall versions, do not properly test for equivalence of process identifiers for certain Microsoft Windows API functions in the NT kernel 5.0 and greater, which allows local users to call these functions, and bypass firewall rules or gain privileges, via a modified identifier that is one, two, or three greater than the canonical identifier.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| comodo | comodo_firewall_pro | 2.4.18.184 | - | - |
cpe:2.3:a:comodo:comodo_firewall_pro:2.4.18.184:*:*:*:*:*:*:*
|
| comodo | comodo_personal_firewall | 2.3.6.81 | - | - |
cpe:2.3:a:comodo:comodo_personal_firewall:2.3.6.81:*:*:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
CVSS评分详情
AV:L/AC:L/Au:N/C:C/I:C/A:C
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2007-2729 |
2025-11-11 15:17:52 | 2025-11-11 07:32:44 |
| NVD | nvd_CVE-2007-2729 |
2025-11-11 14:52:10 | 2025-11-11 07:41:30 |
| CNNVD | cnnvd_CNNVD-200705-325 |
2025-11-11 15:08:56 | 2025-11-11 07:49:17 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 授权问题
- cnnvd_id: 未提取 -> CNNVD-200705-325
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- severity: SeverityLevel.MEDIUM -> SeverityLevel.HIGH
- cvss_score: 未提取 -> 7.2
- cvss_vector: NOT_EXTRACTED -> AV:L/AC:L/Au:N/C:C/I:C/A:C
- cvss_version: NOT_EXTRACTED -> 2.0
- affected_products_count: 0 -> 2
- data_sources: ['cve'] -> ['cve', 'nvd']