ZDI-CAN-23383: ZDI-25-707: AVG TuneUp for PC TuneUp Service Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of AVG TuneUp for PC. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-13960.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-23383?
The severity of ZDI-CAN-23383 is significant as it allows local attackers to escalate privileges on affected installations of AVG TuneUp for PC.
How do I fix ZDI-CAN-23383?
To fix ZDI-CAN-23383, ensure that you apply the latest updates provided by AVG for TuneUp for PC.
Who is affected by ZDI-CAN-23383?
Users of AVG TuneUp for PC are affected by ZDI-CAN-23383 if their systems have not been updated to a patched version.
Can ZDI-CAN-23383 be exploited remotely?
No, ZDI-CAN-23383 requires local access to the target system in order to exploit the privilege escalation vulnerability.
What type of vulnerability is ZDI-CAN-23383?
ZDI-CAN-23383 is a local privilege escalation vulnerability that affects AVG TuneUp for PC.