PT-2025-48210 · Vipre · Advanced Security

Adam Babis

·

Published

2025-11-26

·

Updated

2025-12-24

·

CVE-2025-13703

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions VIPRE Advanced Security for PC (affected versions not specified)
Description A local attacker can gain higher-level access on systems running VIPRE Advanced Security for PC. To exploit this, an attacker must first be able to run code with limited access on the target system. The issue is due to incorrect permissions set on a folder within the product installer, allowing an attacker to escalate privileges and run code with SYSTEM-level permissions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2025-13703
ZDI-25-1023

Affected Products

Advanced Security