Vulnerabilities
Vulnerable Software
Totalav:  Security Vulnerabilities
TotalAV 2020 4.14.31 has a quarantine flaw that allows privilege escalation. Exploitation uses an NTFS directory junction to restore a malicious DLL from quarantine into the system32 folder.
CVSS Score
7.8
EPSS Score
0.007
Published
2020-01-10
An issue was discovered in TotalAV v4.1.7. An unprivileged user could modify or overwrite all of the product's files because of weak permissions (Everyone:F) under %PROGRAMFILES%, which allows local users to gain privileges or obtain maximum control over the product.
CVSS Score
7.8
EPSS Score
0.0
Published
2018-07-13


Contact Us

Shodan ® - All rights reserved