RSS   Vulnerabilities for 'Antivirus plus 2009'   RSS

2010-01-04
 
CVE-2009-4556

CWE-264
 

 
Quick Heal AntiVirus Plus 2009 10.00 SP1 and Quick Heal Total Security 2009 10.00 SP1 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs, as demonstrated by replacing quhlpsvc.exe.

 

 >>> Vendor: Quickheal 5 Products
Cat quickheal
Antivirus plus 2009
Total security 2009
Antivirus pro
Total security


Copyright 2017, cxsecurity.com