RSS   Vulnerabilities for 'K7 ultimate security'   RSS

2019-12-27
 
CVE-2019-16896

CWE-59
 

 
In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrative privileges of the user, allowing an arbitrary file write via a symbolic link attack with file restoration functionality.

 

 >>> Vendor: K7computing 10 Products
Antivirus
Total security
Anti-virus plus
K7firewall packet driver
K7av sentry device driver
K7sentry.sys
Ultimate security
K7 ultimate security
Antivrius
Enterprise security


Copyright 2024, cxsecurity.com

 

Back to Top