First published: Mon Nov 30 2020(Updated: )
Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Quickheal Total Security | <19.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27585 is classified as a high severity vulnerability due to its potential to allow unauthorized modification of sensitive antivirus settings.
To fix CVE-2020-27585, update Quick Heal Total Security to version 19.0 or later.
CVE-2020-27585 affects users of Quick Heal Total Security prior to version 19.0.
Attackers with local admin rights can exploit CVE-2020-27585 to modify sensitive antivirus settings through a brute-force attack on the settings password.
Yes, a patch for CVE-2020-27585 is available in Quick Heal Total Security version 19.0 and later.