CVE-2019-19382

Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replace a .exe or .dll file to achieve privilege escalation.
Configurations

Configuration 1 (hide)

cpe:2.3:a:maxpcsecure:anti_virus_plus:19.0.4.020:*:*:*:*:*:*:*

History

21 Nov 2024, 04:34

Type Values Removed Values Added
References () http://hyp3rlinx.altervista.org - Exploit, Third Party Advisory () http://hyp3rlinx.altervista.org - Exploit, Third Party Advisory
References () http://packetstormsecurity.com/files/155506/Max-Secure-Anti-Virus-Plus-19.0.4.020-Insecure-Permissions.html - Exploit, Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/155506/Max-Secure-Anti-Virus-Plus-19.0.4.020-Insecure-Permissions.html - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2019-12-03 20:15

Updated : 2024-11-21 04:34


NVD link : CVE-2019-19382

Mitre link : CVE-2019-19382

CVE.ORG link : CVE-2019-19382


JSON object : View

Products Affected

maxpcsecure

  • anti_virus_plus
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource