Local Privilege Escalation Vulnerability in Comodo Antivirus Software
CVE-2019-3969
7.8HIGH
What is CVE-2019-3969?
Comodo Antivirus, specifically versions up to 12.0.0.6810, is susceptible to a Local Privilege Escalation vulnerability due to improper handling of COM clients within the CmdAgent component. This security flaw allows a local process to bypass critical signature checks by utilizing process hollowing techniques. Consequently, an attacker can invoke sensitive COM methods, such as altering the Windows registry with SYSTEM-level privileges, leading to potential unauthorized access and control over the affected systems.
Affected Version(s)
Comodo Antivirus Versions 12.0.0.6810 and below