CVE Feed

    Dashboard / CVE / CVE-2020-11446

    CVE-2020-11446

    ESET Antivirus and Antispyware Module module 1553 through 1560 allows a user with limited access rights to create hard links in some ESET directories and then force the product to write through these links into files that would normally not be write-able by the user, thus achieving privilege escalation.

    Published:Apr 29, 2020
    Last Modified:Nov 21, 2024
    EPS:Apr 29, 2020
    EPSS Score:0.00066
    CVSS Score:7.8

    Affected Products

    Vendor
    Eset
    Product
    Antivirus And Antispyware
    Vendor
    Eset
    Product
    Endpoint Antivirus
    Vendor
    Eset
    Product
    Endpoint Security
    Vendor
    Eset
    Product
    File Security
    Vendor
    Eset
    Product
    Internet Security
    Vendor
    Eset
    Product
    Mail Security
    Vendor
    Eset
    Product
    Nod32 Antivirus
    Vendor
    Eset
    Product
    Smart Security

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High