Webroot endpoint agents prior to version v9.0.28.48 allows remote attackers to trigger a type confusion vulnerability over its listening TCP port, resulting in crashing or reading memory contents of the Webroot endpoint agent.
References
Link | Resource |
---|---|
https://www.tenable.com/security/research/tra-2020-36 | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2020-06-15 20:15
Updated : 2020-06-22 18:52
NVD link : CVE-2020-5754
Mitre link : CVE-2020-5754
CVE.ORG link : CVE-2020-5754
JSON object : View
Products Affected
webroot
- endpoint_agents
CWE
CWE-843
Access of Resource Using Incompatible Type ('Type Confusion')