RSS   Vulnerabilities for 'Antitrack'   RSS

2020-03-09
 
CVE-2020-8987

CWE-295
 

 
Avast AntiTrack before 1.5.1.172 and AVG Antitrack before 2.0.0.178 proxies traffic to HTTPS sites but does not validate certificates, and thus a man-in-the-middle can host a malicious website using a self-signed certificate. No special action necessary by the victim using AntiTrack with "Allow filtering of HTTPS traffic for tracking detection" enabled. (This is the default configuration.)

 

 >>> Vendor: Avast 29 Products
Avast antivirus
Avast antivirus home
Avast antivirus professional
Avast antivirus free
Avast! mobile security
Avast free antivirus
Avast internet security
Avast premier
Avast pro antivirus
Avast
Business security
Email server security
Endpoint protection
Endpoint protection plus
Endpoint protection suite
Endpoint protection suite plus
File server security
Free antivirus
Internet security
Premier
Pro antivirus
Antivirus
Premium security
Secure browser
Antivirus for linux
Antivirus pro
Antivirus pro plus
Antitrack
Avg antitrack


Copyright 2020, cxsecurity.com

 

Back to Top