[] NeoSense

Trend Micro Internet Security Pro 2009 - Priviliege Escalation

Author: b1@ckeYe
type: local
platform: windows
port: 
date_added: 2009-03-29 
date_updated:  
verified: 1 
codes: OSVDB-53228;CVE-2009-0686 
tags: 
aliases:  
screenshot_url:  
application_url: 

Trend Micro Internet Security Pro 2009 tmactmon.sys Priviliege Escalation PoC.
by b1@ckeYe

The vulnerability is caused due to the IOCTL handler of the "tmactmon.sys"
driver improperly processing user space parameters. This exploit execute
arbitrary code in kernel space via a specially crafted IOCTL.

untested: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/8322.zip 2009-trendmicro_local_expl_0day.zip)

# milw0rm.com [2009-03-30]