CVE Vulnerabilities

CVE-2018-11006

Improper Privilege Management

Published: Jan 11, 2021 | Modified: Jan 12, 2021
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
CVSS 2.x
8.8 HIGH
AV:N/AC:M/Au:N/C:N/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Antivrius K7computing * 16.0.0001 (excluding)
Enterprise_security K7computing * 14.2.0001 (excluding)
Total_security K7computing * 16.0.0001 (excluding)
Ultimate_security K7computing * 16.0.0001 (excluding)

Potential Mitigations

References