ZeroHour

CVE-2019-17449

CVSS 3.1
6.7 medium
EPSS
<1%p34
Published
()
Modified
Description

Avira Software Updater before 2.0.6.21094 allows a DLL side-loading attack. NOTE: The vendor thinks that this vulnerability is invalid because exploiting it would require at least administrator privileges and would gain only SYSTEM privileges

Vendors
avira
Products
software updater
Weakness
CWE-426
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news