PT-2022-9773 · Microworld · Escan Antivirus

Published

2022-04-01

·

Updated

2022-04-09

·

CVE-2021-26624

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions eScan Anti-Virus (affected versions not specified)
Description A local privilege escalation issue exists due to a "runasroot" command in eScan Anti-Virus. This is caused by invalid arguments and insufficient execution conditions related to the "runasroot" command, allowing remote attackers to exploit root privileges by manipulating parameter values.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-26624

Affected Products

Escan Antivirus