ZeroHour

CVE-2022-4291

CVSS 3.1
10.0 critical
EPSS
<1%p36
Published
()
Modified
Description

The aswjsflt.dll library from Avast Antivirus windows contained a potentially exploitable heap corruption vulnerability that could enable an attacker to bypass the sandbox of the application it was loaded into, if applicable. This issue was fixed in version 18.0.1478 of the Script Shield Component.

Vendors
avast
Products
script shield
Weakness
CWE-119, CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.