AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-4970

MEDIUM · CVSS 4.4 EPSS 0.28%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-09-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-4970
Severity
MEDIUM
CVSS
4.4
EPSS
0.28%
Windows

Original NVD Description

ProcessGuard 3.410 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via kernel SSDT hooks for Windows Native API functions including (1) NtCreateFile, (2) NtCreateKey, (3) NtDeleteValueKey, (4) NtOpenFile, (5) NtOpenKey, and (6) NtSetValueKey.