Agnitum develops a focused line of client-side security and firewall products, most notably its Outpost Firewall and Outpost Security Suite, that occupy a niche but well-recognized role in endpoint protection. Vulnerabilities in these products tend to acquire public exploit code and recur through weakness classes including race conditions and improper input validation that reflect the complexity of monitoring and filtering network traffic at the application layer. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Agnitum over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-0333HIGH Agnitum Outpost Firewall PRO 4.0 allows local users to bypass access restrictions and insert Trojan horse drivers into the product's installation directory by creating links using | Jan 18, 2007 | 7.2 | 27 | NO | YES |
CVE-2007-3086MEDIUM Unrestricted critical resource lock in Agnitum Outpost Firewall PRO 4.0 1007.591.145 and earlier allows local users to cause a denial of service (system hang) by capturing the outp | Jun 6, 2007 | 4.9 | 22 | NO | YES |
CVE-2006-5721MEDIUM The \Device\SandBox driver in Outpost Firewall PRO 4.0 (964.582.059) allows local users to cause a denial of service (system crash) via an invalid argument to the DeviceIoControl f | Nov 4, 2006 | 4.9 | 22 | NO | YES |
CVE-2010-5171MEDIUM Race condition in Outpost Security Suite Pro 6.7.3.3063.452.0726 and 7.0.3330.505.1221 BETA on Windows XP allows local users to bypass kernel-mode hook handlers, and execute danger | Aug 25, 2012 | 6.2 | 18 | NO | NO |
CVE-2006-3697HIGH Agnitum Outpost Firewall Pro 3.51.759.6511 (462), as used in (1) Lavasoft Personal Firewall 1.0.543.5722 (433) and (2) Novell BorderManager Novell Client Firewall 2.0, does not pro | Jul 21, 2006 | 7.2 | 18 | NO | NO |
filtnt.sys in Outpost Firewall Pro before 3.51.759.6511 (462) allows local users to cause a denial of service (crash) via long arguments to mshta.exe. | Jul 21, 2006 | 2.1 | 17 | NO | YES |
CVE-2006-7160MEDIUM The Sandbox.sys driver in Outpost Firewall PRO 4.0, and possibly earlier versions, does not validate arguments to hooked SSDT functions, which allows local users to cause a denial | Mar 7, 2007 | 4.9 | 15 | NO | NO |
CVE-2004-2472MEDIUM Agnitum Outpost Pro Firewall 2.1 allows remote attackers to cause a denial of service (CPU consumption) via a flood of small, invalid packets, which can not be processed quickly en | Dec 31, 2004 | 5.0 | 15 | NO | NO |
CVE-2007-5042MEDIUM Outpost Firewall Pro 4.0.1025.7828 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a de | Sep 24, 2007 | 4.6 | 14 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Agnitum.
Media articles that mention a CVE ID that affects a product developed by Agnitum — matched by CVE ID, not by vendor name.