CVE-2007-1330
Comodo Firewall Pro (CFP) (formerly Comodo Personal Firewall) 2.4.18.184 and earlier allows local users to bypass driver protections on the HKLM\SYSTEM\Software\Comodo\Personal Firewall registry key by guessing the name of a named pipe under…
Does this matter?
Lower severity and a low EPSS score (0.69%). Track it; it rarely justifies an emergency change on its own.
Description
Comodo Firewall Pro (CFP) (formerly Comodo Personal Firewall) 2.4.18.184 and earlier allows local users to bypass driver protections on the HKLM\SYSTEM\Software\Comodo\Personal Firewall registry key by guessing the name of a named pipe under \Device\NamedPipe\OLE and attempting to open it multiple times.
- CVSS 2.0
- 4.4 MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 0.69% probability · 51th percentile
- CISA KEV
- Not listed
- Affected
- comodo/comodo firewall pro
- Source
- cve@mitre.org
References
- http://osvdb.org/34957
- http://securityreason.com/securityalert/2388
- http://www.matousec.com/info/advisories/Comodo-Bypassing-settings-protection-using-magic-pipe.phpVendor Advisory
- http://www.securityfocus.com/archive/1/461635/100/0/threaded
- http://www.securityfocus.com/bid/22775
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32771
- http://osvdb.org/34957
- http://securityreason.com/securityalert/2388
- http://www.matousec.com/info/advisories/Comodo-Bypassing-settings-protection-using-magic-pipe.phpVendor Advisory
- http://www.securityfocus.com/archive/1/461635/100/0/threaded
- http://www.securityfocus.com/bid/22775
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32771
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.