CVE Database
/

CVE-2020-5755

Back to search

CVE-2020-5755

Published: Jun 15, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

Webroot endpoint agents prior to version v9.0.28.48 did not protect the "%PROGRAMDATA%\WrData\PKG" directory against renaming. This could allow attackers to trigger a crash or wait upon Webroot service restart to rewrite and hijack dlls in this directory for privilege escalation.

VendorProductVersions

n/a

Webroot SecureAnywhere

affected
All versions prior to version v9.0.28.48

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now