CVE-2019-18645: Medium severity totaldefense antivirus vulnerability
Published Oct 30, 2019
·Updated
The quarantine restoration function in Total Defense Anti-virus 11.5.2.28 is vulnerable to symbolic link attacks, allowing files to be written to privileged directories.
Affected Software
1 affected component
TotalDefense Anti-virus=11.5.2.28
Event History
Oct 30, 2019
CVE Published
via MITRE·11:07 PM
Data Sourced
via MITRE·11:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-18645?
CVE-2019-18645 has a high severity rating due to its potential for local privilege escalation.
2
How do I fix CVE-2019-18645?
To fix CVE-2019-18645, update Total Defense Anti-virus to the latest version that addresses this vulnerability.
3
What type of attack does CVE-2019-18645 involve?
CVE-2019-18645 involves symbolic link attacks that exploit the quarantine restoration function.
4
What files are affected by CVE-2019-18645?
CVE-2019-18645 allows the attacker to write files to privileged directories.
5
Which version of Total Defense Anti-virus is vulnerable to CVE-2019-18645?
Total Defense Anti-virus version 11.5.2.28 is vulnerable to CVE-2019-18645.