PT-2026-30358 · Undefined · Undefined

Published

2026-04-04

·

Updated

2026-04-04

·

CVE-2016-20061

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
sheed AntiVirus 2.3 contains an unquoted service path vulnerability in the ShavProt service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can insert a malicious executable in the unquoted path and trigger service restart or system reboot to execute code with LocalSystem privileges.

Fix

Weakness Enumeration

Related Identifiers

CVE-2016-20061

Affected Products

Undefined