PT-2026-30358 · Undefined · Undefined
CVE-2016-20061
·
Published
2026-04-04
·
Updated
2026-07-21
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
sheed AntiVirus version 2.3
Description
The ShavProt service contains an unquoted service path issue. This allows local attackers to escalate privileges by placing a malicious executable within the unquoted binary path. Upon a service restart or system reboot, the malicious code is executed with LocalSystem privileges.
Recommendations
Update sheed AntiVirus version 2.3 to a version that fixes the unquoted service path in the ShavProt service.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Undefined