CVE-2020-27585: Medium severity quickheal total security vulnerability
Published Nov 30, 2020
·Updated
Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.
Affected Software
1 affected component
QuickHeal Total Security<19.00
Event History
Nov 30, 2020
CVE Published
via MITRE·07:41 PM
Data Sourced
via MITRE·07:41 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-27585?
CVE-2020-27585 is classified as a high severity vulnerability due to its potential to allow unauthorized modification of sensitive antivirus settings.
2
How do I fix CVE-2020-27585?
To fix CVE-2020-27585, update Quick Heal Total Security to version 19.0 or later.
3
Who is affected by CVE-2020-27585?
CVE-2020-27585 affects users of Quick Heal Total Security prior to version 19.0.
4
What can attackers do with CVE-2020-27585?
Attackers with local admin rights can exploit CVE-2020-27585 to modify sensitive antivirus settings through a brute-force attack on the settings password.
5
Is a patch available for CVE-2020-27585?
Yes, a patch for CVE-2020-27585 is available in Quick Heal Total Security version 19.0 and later.