CVE-2018-5701 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 18.5% (pctl 97)
Patch early
A public exploit exists.
Description
In Iolo System Shield AntiVirus and AntiSpyware 5.0.0.136, the amp.sys driver file contains an Arbitrary Write vulnerability due to not validating input values from IOCtl 0x00226003.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 18.46% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-01-31 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| iolo | system shield |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | System Mechanic v15.5.0.61 - Arbitrary Read/Write | 2023-03-25 |
| exploit-db | System Shield 5.0.0.136 - Privilege Escalation | 2018-01-30 |
References
- http://packetstormsecurity.com/files/146165/System-Shield-5.0.0.136-Privilege-Escalation.html
- https://www.exploit-db.com/exploits/43929/
- https://www.greyhathacker.net/?p=1006
- http://packetstormsecurity.com/files/146165/System-Shield-5.0.0.136-Privilege-Escalation.html
- https://www.exploit-db.com/exploits/43929/
- https://www.greyhathacker.net/?p=1006
→ the Explorer · watch your stack · NVD