The vulnerability potentially allows an attacker to misuse ESET’s file operations during the module update to delete or move files without having proper permissions.
oryginał ENCVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HEset Endpoint Antivirus
APPEsetwszystkie wersjeEset Endpoint Security
APPEsetwszystkie wersjeEset Internet Security
APPEsetwszystkie wersjeEset Mail Security
APPEsetwszystkie wersjeEset Nod32
APPEsetwszystkie wersjeEset Security
APPEsetwszystkie wersjeEset Server Security
APPEsetwszystkie wersjeEset Smart Security
APPEsetwszystkie wersje
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Powiązane podatności
CVE-2020-10180CRITICAL9.8PL ✓ten sam produkt
Ominięcie wykrywania wirusów w ESET przez zmodyfikowane archiwum BZ2
CVE-2015-8841CRITICAL9.8PL ✓ten sam produkt
Heap-based buffer overflow w ESET NOD32 — RCE przez plik SIS
CVE-2024-0353HIGH7.8ten sam produkt
Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to d...
CVE-2023-5594HIGH7.5ten sam produkt
Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermedia...
CVE-2023-2847HIGH7.8ten sam produkt
During internal security analysis, a local privilege escalation vulnerability has been identified. On a machi...