Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ccfh-v7cp-3943

Опубликовано: 03 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to escalate privileges via an COM hijack in a time-of-check to time-of-use (TOCTOU) when self protection is disabled.

The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to escalate privileges via an COM hijack in a time-of-check to time-of-use (TOCTOU) when self protection is disabled.

EPSS

Процентиль: 12%
0.0004
Низкий

7.5 High

CVSS3

Дефекты

CWE-367

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to escalate privileges via an COM hijack in a time-of-check to time-of-use (TOCTOU) when self protection is disabled.

EPSS

Процентиль: 12%
0.0004
Низкий

7.5 High

CVSS3

Дефекты

CWE-367