← voltar
CVE-2020-36980

SAntivirus IC 10.0.21.61 - 'SAntivirusIC' Unquoted Service Path

CVSS 8.5 HIGHEPSS 0.1%CWE-428
SAntivirus IC 10.0.21.61 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted executable path to inject malicious files in the service binary path, enabling privilege escalation to system-level permissions.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
Segurazo · SAntivirus IC

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →