7.8
CVE-2020-12463
- EPSS 0.04%
- Veröffentlicht 05.05.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:59:45
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An elevation of privilege vulnerability exists in Avira Software Updater before 2.0.6.27476 due to improperly handling file hard links. This allows local users to obtain take control of arbitrary files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Avira ≫ Software Updater Version < 2.0.6.27476
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.103 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|