Local Privilege Escalation Vulnerability in Avira AntiVir Products
CVE-2009-2761

Currently unrated

Key Information:

Vendor

Avira

Vendor
CVE Published:
13 August 2009

What is CVE-2009-2761?

The vulnerability in Avira AntiVir and its associated products arises from an unquoted search path in the scheduler (sched.exe). This flaw allows local users to execute a malicious file named antivir.exe placed within the 'C:\Program Files\avira' directory, potentially leading to escalated privileges. Users should remain vigilant and ensure that proper file path quoting is implemented to mitigate this security risk.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.