The dwall.sys driver in SoftSphere DefenseWall Personal Firewall 3.24 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222000, 0x00222004, 0x00222008, 0x0022200c, or 0x00222010 IOCTL call.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1515
Reference (s):
- EXPLOIT-DB:36052
- URL: http://www.exploit-db.com/exploits/36052
- OSVDB:117996
- URL: http://www.osvdb.org/117996

