ZDI-26-565: Gen Digital CCleaner Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Gen Digital CCleaner. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-12410.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-565?
The ZDI-26-565 vulnerability has a CVSS rating of 7.8, indicating a high severity level.
How do I fix ZDI-26-565?
To fix ZDI-26-565, users should update to the latest version of Gen Digital CCleaner, which addresses the local privilege escalation issue.
Who can exploit the ZDI-26-565 vulnerability?
The ZDI-26-565 vulnerability can be exploited by local attackers who have the ability to execute low-privileged code on the target system.
What are the potential impacts of ZDI-26-565?
The ZDI-26-565 vulnerability allows local attackers to escalate their privileges, potentially leading to unauthorized access and control over the system.
Is ZDI-26-565 specific to certain versions of Gen Digital CCleaner?
Yes, ZDI-26-565 affects specific installations of Gen Digital CCleaner, and users should verify their version against vulnerability advisories.