VulnerabilityModified
CVE-2006-7129
ISS BlackICE PC Protection 3.6 cpj and cpu, and possibly earlier versions, allows local users to bypass the protection scheme by using the ZwDeleteFile API function to delete the critical filelock.txt file, which stores information about protected files.
LOW 2.1EPSS 0.76%
Does this matter?
Lower severity and a low EPSS score (0.76%). Track it; it rarely justifies an emergency change on its own.
Description
ISS BlackICE PC Protection 3.6 cpj and cpu, and possibly earlier versions, allows local users to bypass the protection scheme by using the ZwDeleteFile API function to delete the critical filelock.txt file, which stores information about protected files.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 0.76% probability · 53th percentile
- CISA KEV
- Not listed
- Affected
- iss/blackice pc protection
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/fulldisclosure/2006-10/0298.html
- http://securityreason.com/securityalert/2361
- http://www.matousec.com/info/advisories/BlackICE-Filelock-protection-bypass.php
- http://www.osvdb.org/30901
- http://www.securityfocus.com/archive/1/448763/100/0/threaded
- http://www.securityfocus.com/bid/20546
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29575
- http://archives.neohapsis.com/archives/fulldisclosure/2006-10/0298.html
- http://securityreason.com/securityalert/2361
- http://www.matousec.com/info/advisories/BlackICE-Filelock-protection-bypass.php
- http://www.osvdb.org/30901
- http://www.securityfocus.com/archive/1/448763/100/0/threaded
- http://www.securityfocus.com/bid/20546
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29575
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.