First published: Tue Sep 24 2019(Updated: )
In Total Defense Anti-virus 9.0.0.773, insecure access control for the directory %PROGRAMDATA%\TotalDefense\Consumer\ISS\9\bd\TDUpdate2\ used by AMRT.exe allows local attackers to hijack bdcore.dll, which leads to privilege escalation when the AMRT service loads the DLL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TotalDefense AntiVirus | =9.0.0.773 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13356 is rated as a high-severity vulnerability due to its potential for privilege escalation.
To fix CVE-2019-13356, ensure that access controls are properly configured for the directory used by AMRT.exe.
CVE-2019-13356 affects users of Total Defense Anti-virus version 9.0.0.773.
An attacker can exploit CVE-2019-13356 to hijack the bdcore.dll file, leading to unauthorized code execution with elevated privileges.
A recommended workaround for CVE-2019-13356 is to restrict permissions on the affected directory to prevent unauthorized access.