CVE-2006-1355Avast Antivirus vulnerability

3 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.0%
top 85.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 22
Latest updateMay 1

Description

avast! Antivirus 4.6.763 and earlier sets "BUILTIN\Everyone" permissions to critical system files in the installation folder, which allows local users to gain privileges or disable protection by modifying those files.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xqq5-jv4j-qg87: avast! Antivirus 42022-05-01
CVEList
CVE-2006-1355: avast! Antivirus 42006-03-22
CVE-2006-1355 — Alwil Avast Antivirus vulnerability | cvebase