CVE-2008-5049
Last modified
CVE-2008-5049 is a vulnerability of currently unknown severity. Buffer overflow in AKEProtect.sys 3.3.3.0 in ISecSoft Anti-Keylogger Elite 3.3.0 and earlier, and possibly other versions including 3.3.3, allows local users to gain privileges via long inputs to the (1) 0x002224A4, (2) 0x002224C0, and (3) 0x002224CC IOCTL.. EPSS estimates a 0.94% chance of exploitation in the next 30 days.
Description
Buffer overflow in AKEProtect.sys 3.3.3.0 in ISecSoft Anti-Keylogger Elite 3.3.0 and earlier, and possibly other versions including 3.3.3, allows local users to gain privileges via long inputs to the (1) 0x002224A4, (2) 0x002224C0, and (3) 0x002224CC IOCTL.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Isecsoft | Anti-Keylogger Elite | <= 3.3.0 |
References
- http://secunia.com/advisories/32634Vendor Advisory
- http://secunia.com/advisories/32634Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-5049?
How severe is CVE-2008-5049?
How do I fix CVE-2008-5049?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-5043Multiple cross-site scripting (XSS) vulnerabilities in the w…
- CVE-2008-5044Race condition in Microsoft Windows Server 2003 and Vista al…
- CVE-2008-5045Heap-based buffer overflow in Network-Client FTP Now 2.6, an…
- CVE-2008-5046SQL injection vulnerability in index.php in Mole Group Pizza…
- CVE-2008-5047SQL injection vulnerability in admin/index.php in Mole Group…
- CVE-2008-5048Buffer overflow in Atepmon.sys in ISecSoft Anti-Trojan Elite…
- CVE-2008-5050Off-by-one error in the get_unicode_name function (libclamav…
- CVE-2008-5051SQL injection vulnerability in the JooBlog (com_jb2) compone…
- CVE-2008-5052The AppendAttributeValue function in the JavaScript engine i…
- CVE-2008-5053PHP remote file inclusion vulnerability in admin.rssreader.p…
- CVE-2008-5054Multiple SQL injection vulnerabilities in Develop It Easy Me…
- CVE-2008-5055SQL injection vulnerability in department_offline_context.ph…
Are you affected by CVE-2008-5049?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
