Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replace a .exe or .dll file to achieve privilege escalation.
References
Link | Resource |
---|---|
http://hyp3rlinx.altervista.org | Exploit Third Party Advisory |
http://packetstormsecurity.com/files/155506/Max-Secure-Anti-Virus-Plus-19.0.4.020-Insecure-Permissions.html | Exploit Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2019-12-03 20:15
Updated : 2019-12-13 19:20
NVD link : CVE-2019-19382
Mitre link : CVE-2019-19382
CVE.ORG link : CVE-2019-19382
JSON object : View
Products Affected
maxpcsecure
- anti_virus_plus
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource