CVE-2020-12254: High severity avira antivirus vulnerability
Published Apr 26, 2020
·Updated
Avira Antivirus before 5.0.2003.1821 on Windows allows privilege escalation or a denial of service via abuse of a symlink.
Affected Software
1 affected component
Avira Antivirus Windows<5.0.2003.1821
Event History
Apr 26, 2020
CVE Published
via MITRE·02:52 PM
Data Sourced
via MITRE·02:52 PM
Description
Frequently Asked Questions
1
What is CVE-2020-12254?
CVE-2020-12254 is a vulnerability in Avira Antivirus before version 5.0.2003.1821 on Windows that allows privilege escalation or denial of service by abusing a symlink.
2
How does CVE-2020-12254 affect Avira Antivirus?
CVE-2020-12254 affects Avira Antivirus before version 5.0.2003.1821 on Windows.
3
What is the severity of CVE-2020-12254?
CVE-2020-12254 has a severity rating of 7.8, which is considered high.
4
How can CVE-2020-12254 be exploited?
CVE-2020-12254 can be exploited by abusing a symlink.
5
Is there a fix available for CVE-2020-12254?
Yes, a fix is available for CVE-2020-12254. Users should update to version 5.0.2003.1821 or later of Avira Antivirus for Windows.