ZDI-CAN-14162: ESET Endpoint Antivirus Unnecessary Privileges Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of ESET Endpoint Antivirus. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the use of named pipes. The issue results from allowing an untrusted process to impersonate the client of a pipe. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-14162?
The severity of ZDI-CAN-14162 is categorized as a local privilege escalation vulnerability.
How do I fix ZDI-CAN-14162?
To fix ZDI-CAN-14162, ensure that ESET Endpoint Antivirus is updated to the latest version provided by ESET.
Who is affected by ZDI-CAN-14162?
ZDI-CAN-14162 affects installations of ESET Endpoint Antivirus on Windows systems.
What could an attacker do with ZDI-CAN-14162?
An attacker exploiting ZDI-CAN-14162 could escalate privileges, allowing them to execute code with higher permissions.
What conditions are necessary to exploit ZDI-CAN-14162?
To exploit ZDI-CAN-14162, an attacker must first execute low-privileged code on the affected system.