Lucene search

K
cvelistMitreCVELIST:CVE-2019-18894
HistoryJan 13, 2020 - 4:13 p.m.

CVE-2019-18894

2020-01-1316:13:02
mitre
www.cve.org
3

EPSS

0.001

Percentile

41.1%

In Avast Premium Security 19.8.2393, attackers can send a specially crafted request to the local web server run by Avast Antivirus on port 27275 to support Bank Mode functionality. A flaw in the processing of a command allows execution of arbitrary OS commands with the privileges of the currently logged in user. This allows for example attackers who compromised a browser extension to escape from the browser sandbox.

EPSS

0.001

Percentile

41.1%

Related for CVELIST:CVE-2019-18894