ZeroHour

CVE-2021-45335

PoC
CVSS 3.1
8.8 high
EPSS
<1%p31
Published
()
Modified
Description

Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of scans, and therefore evade detection or delete arbitrary system files.

Vendors
avast
Products
antivirus
Weakness
CWE-276
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.