VIPRE Advanced Security Local Privilege Escalation Vulnerability
Vulnerability
A local privilege escalation vulnerability has been identified in VIPRE Advanced Security for Windows, specifically in version 12.1.0.276. This vulnerability arises from incorrect permission assignments in the product installer, allowing local attackers who can execute low-privileged code to escalate privileges and execute arbitrary code with SYSTEM rights.
Impact
Exploitation of this vulnerability allows for local privilege escalation, enabling an attacker to execute code with elevated SYSTEM privileges.
Remediation
VIPRE has released a patch for this vulnerability. Users are advised to update to the latest version of VIPRE Advanced Security for Windows.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
