CVE-2025-69875: High severity Quick Heal Total Security vulnerability
A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling allow a low-privileged local user to restore quarantined files into protected system directories. This behavior can be abused by a local attacker to place files in high-privilege locations, potentially leading to privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69875?
CVE-2025-69875 is considered a high severity vulnerability due to its potential impact on system integrity.
How do I fix CVE-2025-69875?
To mitigate CVE-2025-69875, ensure that Quick Heal Total Security is updated to the latest version, which addresses this vulnerability.
What type of systems are affected by CVE-2025-69875?
CVE-2025-69875 specifically affects the Quick Heal Total Security version 23.0.0.
Who can exploit CVE-2025-69875?
CVE-2025-69875 can be exploited by low-privileged local users who have access to the system.
What are the potential consequences of CVE-2025-69875?
The consequences of CVE-2025-69875 include the unauthorized restoration of quarantined files to protected system directories, potentially compromising system security.