Improper Link Resolution in WatchDog Anti-Virus on Windows
CVE-2026-92253

5.2MEDIUM

Key Information:

Vendor

Watchdog

Vendor
CVE Published:
20 September 2026

What is CVE-2026-92253?

A vulnerability exists in the quarantine restoration process of WatchDog Anti-Virus 1.8.640 on Windows, where improper link resolution before file access could allow local, low-privileged attackers to manipulate filesystem behavior. By creating a directory junction at the original file path and convincing an administrator to restore a quarantined file, attackers could potentially redirect the file to an arbitrary filesystem location. This exploitation could result in the modification of protected files or even unauthorized execution of SYSTEM-level code through techniques such as DLL hijacking.

Affected Version(s)

Anti-Virus Windows 1.8.640 < 1.8.804

References

CVSS V4

Score:
5.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Patrick Tung
.