Vulnerability Details CVE-2020-15722
In version 12.1.0.1004 and below of 360 Total Security,when TPI calls the browser process, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking could execute arbitrary code on the Local system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.2%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.9
Products affected by CVE-2020-15722
-
cpe:2.3:a:360totalsecurity:360_total_security:-
-
cpe:2.3:a:360totalsecurity:360_total_security:10.8.0.1213
-
cpe:2.3:a:360totalsecurity:360_total_security:12.1.0.1004
-
cpe:2.3:a:360totalsecurity:360_total_security:3.5.0.1033
-
cpe:2.3:a:360totalsecurity:360_total_security:9.0.0.1202