CVE Feed

    Dashboard / CVE / CVE-2020-26941

    CVE-2020-26941

    A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions. The possibility of exploiting this vulnerability is limited and can only take place during the installation phase of ESET products. Furthermore, exploitation can only succeed when Self-Defense is disabled. Affected products are: ESET NOD32 Antivirus, ESET Internet Security, ESET Smart Security, ESET Smart Security Premium versions 13.2 and lower; ESET Endpoint Antivirus, ESET Endpoint Security, ESET NOD32 Antivirus Business Edition, ESET Smart Security Business Edition versions 7.3 and lower; ESET File Security for Microsoft Windows Server, ESET Mail Security for Microsoft Exchange Server, ESET Mail Security for IBM Domino, ESET Security for Kerio, ESET Security for Microsoft SharePoint Server versions 7.2 and lower.

    Published:Jan 21, 2021
    Last Modified:Nov 21, 2024
    EPS:Jan 21, 2021
    EPSS Score:0.00032
    CVSS Score:5.5

    Affected Products

    Vendor
    Eset
    Product
    Endpoint Antivirus
    Vendor
    Eset
    Product
    Endpoint Security
    Vendor
    Eset
    Product
    File Security
    Vendor
    Eset
    Product
    Internet Security
    Vendor
    Eset
    Product
    Mail Security
    Vendor
    Eset
    Product
    Nod32 Antivirus
    Vendor
    Eset
    Product
    Security
    Vendor
    Eset
    Product
    Smart Security

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High