PT-2021-7005 · Avast · Avast Antivirus

Published

2021-12-20

·

Updated

2026-05-10

·

CVE-2022-26522

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Avast Antivirus (affected versions not specified)
Description The issue is related to insufficient access control in the aswArPot.sys driver of Avast Antivirus, which could allow an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Time Of Check To Time Of Use

Weakness Enumeration

Related Identifiers

BDU:2022-02923
CVE-2022-26522

Affected Products

Avast Antivirus