CVE-2007-1051
MEDIUM 4.6EPSS 0.3%
Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.17.183 and earlier uses a weak cryptographic hashing function (CRC32) to identify trusted modules, which allows local users to bypass security protections by substituting modified modules that have the same CRC32 value.
- CVSS v2.0
- 4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 0.34% chance of exploitation in the next 30 days, 27th percentile
- Published
- 2007-02-21
- Updated
- 2024-08-07
Proof-of-concept exploits (3)
- http://www.securityfocus.com/archive/1/460209/100/100/threaded
- http://www.matousec.com/info/advisories/Comodo-DLL-injection-via-weak-hash-function-explo…
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-February/052461.html