ZeroHour

CVE-2020-10865

PoC
CVSS 3.1
7.5 high
EPSS
2%p76
Published
()
Modified
Description

An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to make arbitrary changes to the Components section of the Stats.ini file via RPC from a Low Integrity process.

Vendors
avast
Products
antivirus
Weakness
CWE-829
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.