### [CVE-2018-15732](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-15732) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description An issue was discovered in STOPzilla AntiMalware 6.5.2.59. The driver file szkg64.sys contains an Arbitrary Write vulnerability due to not validating the output buffer address value from IOCtl 0x80002063. ### POC #### Reference - https://www.greyhathacker.net - https://www.greyhathacker.net #### Github - https://github.com/TheJoyOfHacking/gtworek-Priv2Admin - https://github.com/geeksniper/windows-privilege-escalation - https://github.com/gtworek/Priv2Admin