First published: Mon Jun 15 2020(Updated: )
Webroot endpoint agents prior to version v9.0.28.48 did not protect the "%PROGRAMDATA%\WrData\PKG" directory against renaming. This could allow attackers to trigger a crash or wait upon Webroot service restart to rewrite and hijack dlls in this directory for privilege escalation.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Webroot endpoint agents | <9.0.28.48 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.