ZDI-CAN-20587: ZDI-23-1114: ESET Smart Security Link Following Local Privilege Escalation Vulnerability
Published Aug 15, 2023
·Updated
This vulnerability allows local attackers to escalate privileges on affected installations of ESET Smart Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
1 affected component
ESET Smart Security
Event History
Aug 15, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-20587?
The severity of ZDI-CAN-20587 is high due to its ability to allow local privilege escalation.
2
How do I fix ZDI-CAN-20587?
To fix ZDI-CAN-20587, update ESET Smart Security to the latest version provided by the vendor.
3
What systems are affected by ZDI-CAN-20587?
ZDI-CAN-20587 affects installations of ESET Smart Security for Windows.
4
Can ZDI-CAN-20587 be exploited remotely?
No, ZDI-CAN-20587 requires local access to the target system to be exploited.
5
What attackers need to exploit ZDI-CAN-20587?
Attackers need the ability to execute low-privileged code on the target system to exploit ZDI-CAN-20587.