PT-2025-52473 · Realdefense · Superantispyware

Gongjae

·

Published

2025-12-19

·

Updated

2026-01-20

·

CVE-2025-14489

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions RealDefense SUPERAntiSpyware (affected versions not specified)
Description A local privilege escalation issue exists in RealDefense SUPERAntiSpyware. Successful exploitation allows an attacker with low-privileged access to execute arbitrary code with SYSTEM-level privileges. The issue stems from an exposed dangerous function within the SAS Core Service. An attacker must first gain the ability to execute code on the target system to exploit this flaw.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Weakness Enumeration

Related Identifiers

CVE-2025-14489
ZDI-25-1165

Affected Products

Superantispyware