AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-4967

MEDIUM · CVSS 4.4 EPSS 0.32%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-09-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-4967
Severity
MEDIUM
CVSS
4.4
EPSS
0.32%
Windows

Original NVD Description

Online Armor Personal Firewall 2.0.1.215 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via unspecified kernel SSDT hooks for Windows Native API functions including (1) NtAllocateVirtualMemory, (2) NtConnectPort, (3) NtCreateFile, (4) NtCreateKey, (5) NtCreatePort, (6) NtDeleteFile, (7) NtDeleteValueKey, (8) NtLoadKey, (9) NtOpenFile, (10) NtOpenProcess, (11) NtOpenThread, (12) NtResumeThread, (13) NtSetContextThread, (14) NtSetValueKey, (15) NtSuspendProcess, (16) NtSuspendThread, and (17) NtTerminateThread.