Avira Spotlight Service Local Privilege Escalation Vulnerability in Avira Prime on Windows 10 x64

Vulnerability

A local privilege escalation vulnerability has been identified in the Avira Spotlight Service executable, specifically within Avira Prime version 1.1.96.2, running on Windows 10 x64. This vulnerability allows local attackers to gain system-level privileges by exploiting arbitrary file deletion capabilities.

Impact

Exploitation of this vulnerability could lead to unauthorized elevation of privileges, allowing a user to gain system-level access.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.