CVE-2020-15723: High severity virustotal vulnerability
Published Jul 21, 2020
·Updated
In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking to bypass the hips could execute arbitrary code on the Local system.
Affected Software
1 affected component
360totalsecurity 360 Total Security<=12.1.0.1004
Event History
Jul 21, 2020
CVE Published
via MITRE·05:04 PM
Data Sourced
via MITRE·05:04 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-15723?
CVE-2020-15723 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2020-15723?
To remediate CVE-2020-15723, upgrade to a version of 360 Total Security later than 12.1.0.1004.
3
What software is affected by CVE-2020-15723?
CVE-2020-15723 affects 360 Total Security versions up to and including 12.1.0.1004.
4
What type of vulnerability is CVE-2020-15723?
CVE-2020-15723 is a local privilege escalation vulnerability due to DLL hijacking.
5
Can CVE-2020-15723 allow remote code execution?
While CVE-2020-15723 primarily allows local code execution, exploitation may lead to broader system compromises.