|
Diskeeper DKService.EXE Remote Information Disclosure Vulnerability
Diskeeper is prone to an information-disclosure vulnerability because it fails to restrict access to a certain RPC function. This issue can be exploited to gain access to potentially sensitive information stored at arbitrary attacker-supplied memory addresses. Information gained could aid in further attacks. Supplying a bad memory address will cause denial-of-service conditions. Diskeeper 9 Professional, Diskeeper 10 Professional and Diskeeper 2007 Pro Premier are vulnerable; other versions may also be affected. |
|
|
Privacy Statement |