35
CVE-2019-17449
—CVSS 3.1
6.7 medium
EPSS
<1%p34
Published
()
Modified
Description
Avira Software Updater before 2.0.6.21094 allows a DLL side-loading attack. NOTE: The vendor thinks that this vulnerability is invalid because exploiting it would require at least administrator privileges and would gain only SYSTEM privileges
- Vendors
- avira
- Products
- software updater
- Weakness
- CWE-426
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H