PT-2026-5003 · Segurazo · Santivirus Ic

Mara Ramirez

·

Published

2026-01-27

·

Updated

2026-01-27

·

CVE-2020-36980

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SAntivirus IC version 10.0.21.61
Description An unquoted service path in the Windows service configuration allows local attackers to potentially execute arbitrary code. By exploiting the unquoted executable path, attackers can inject malicious files into the service binary path, enabling privilege escalation to system-level permissions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2020-36980

Affected Products

Santivirus Ic