CVE Database
/

CVE-2019-3970

Back to search

CVE-2019-3970

Published: Jul 17, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's Antivirus database. Cavwp.exe loads Comodo antivirus definition database in unsecured global section objects, allowing a local low privileged process to modify this data directly and change virus signatures.

VendorProductVersions

n/a

Comodo Antivirus

affected
Versions 12.0.0.6810 and below

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now