Security Advisory

CVE-2019-13355

7.8
HIGH

Vulnerability Description

In Total Defense Anti-virus 9.0.0.773, insecure access control for the directory %PROGRAMDATA%\TotalDefense\Consumer\ISS\9\ used by ccschedulersvc.exe allows local attackers to hijack dotnetproxy.exe, which leads to privilege escalation when the ccSchedulerSVC service runs the executable.
Published Date September 24, 2019
Official Source NIST NVD Advisory