PT-2010-4571 · Avast · Avast Free Antivirus

Bruno Filipe

+1

·

Published

2010-08-26

·

Updated

2017-09-19

·

CVE-2010-3126

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions avast! Free Antivirus versions 5.0.594 and earlier
Description The issue allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks. This can be achieved via a Trojan horse mfc90loc.dll located in the same folder as an avast license (.avastlic) file.
Recommendations For avast! Free Antivirus versions 5.0.594 and earlier, update to a version later than 5.0.594 to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-3126

Affected Products

Avast Free Antivirus