Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-46715— Sandboxie Arbitrary Kernel Write in SbieDrv.sys API (API_GET_SECURE_PARAM)

CVSS 7.8 · High EPSS 0.08% · P24
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-46715

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Sandboxie Arbitrary Kernel Write in SbieDrv.sys API (API_GET_SECURE_PARAM)
Source: NVD (National Vulnerability Database)
Vulnerability Description
Sandboxie is a sandbox-based isolation software for 32-bit and 64-bit Windows NT-based operating systems. Starting in version 1.3.0 and prior to version 1.15.12, Api_GetSecureParam fails to sanitize incoming pointers, and implicitly trusts that the pointer the user has passed in is safe to write to. GetRegValue then writes the contents of the SBIE registry entry selected to this address. An attacker can pass in a kernel pointer and the driver dumps the registry key contents we requested to it. This can be triggered by anyone on the system, including low integrity windows processes. Version 1.15.12 fixes the issue.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
跨界内存写
Source: NVD (National Vulnerability Database)
Vulnerability Title
Sandboxie 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Sandboxie是sandboxie-plus开源的一款基于沙盒的隔离软件。 Sandboxie 1.3.0至1.15.12之前版本存在缓冲区错误漏洞,该漏洞源于Api_GetSecureParam未清理传入指针,可能导致内核指针泄露。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
sandboxie-plusSandboxie >= 1.3.0, < 1.15.12 -

II. Public POCs for CVE-2025-46715

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-46715

登录查看更多情报信息。

Same Patch Batch · sandboxie-plus · 2025-05-22 · 4 CVEs total

CVE-2025-467137.8 HIGHSandboxie has Pool Buffer Overflow in SbieDrv.sys API (API_SET_SECURE_PARAM)
CVE-2025-467147.8 HIGHSandboxie has Pool Buffer Overflow in SbieDrv.sys API (API_GET_SECURE_PARAM)
CVE-2025-467165.5 MEDIUMSandboxie Arbitrary Kernel Read in SbieDrv.sys API (API_SET_SECURE_PARAM)

IV. Related Vulnerabilities

V. Comments for CVE-2025-46715

No comments yet


Leave a comment