Security Advisory

CVE-2019-13357

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-24 14:08:14
Last updated 2024-08-04 23:49:25
Assigner mitre
State PUBLISHED

Description

In Total Defense Anti-virus 9.0.0.773, resource acquisition from the untrusted search path C: used by caschelp.exe allows local attackers to hijack ccGUIFrm.dll, which leads to code execution. SYSTEM-level code execution can be achieved when the ccSchedulerSVC service runs the affected executable.