A vulnerability was found in Avast Antivirus up to 20.3 (Anti-Malware Software). It has been declared as critical. Affected by this vulnerability is an unknown part of the component Sandbox. Upgrading to version 20.4 eliminates this vulnerability.
Avast Antivirus up to 20.3 Sandbox access control
- Virtual Patching
- December 30, 2021
- 8:10 am
CVE-2024-27521 : TOTOLINK A3300R 17.0.0CU.557_B20221024 SETOPMODECFG IMPROPER AUTHENTICATION
Description TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain an unauthenticated remote command execution (RCE) vulnerability via multiple parameters in the
CVE-2024-25002 : BOSCH NETWORK SYNCHRONIZER STANDARD UP TO 9.29 DIAGNOSTICS INTERFACE OS COMMAND INJECTION
Description Command Injection in the diagnostics interface of the Bosch Network Synchronizer allows unauthorized users full access to the device.
CVE-2024-2862 : LG ELECTRONICS LED ASSISTANT 2.1.65 PASSWORD IMPROPER AUTHENTICATION
Description This vulnerability allows remote attackers to reset the password of anonymous users without authorization on the affected LG LED