PT-2010-4571 · Avast · Avast Free Antivirus
Bruno Filipe
+1
·
Published
2010-08-26
·
Updated
2017-09-19
·
CVE-2010-3126
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
avast! Free Antivirus versions 5.0.594 and earlier
Description
The issue allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks. This can be achieved via a Trojan horse mfc90loc.dll located in the same folder as an avast license (.avastlic) file.
Recommendations
For avast! Free Antivirus versions 5.0.594 and earlier, update to a version later than 5.0.594 to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Avast Free Antivirus