Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-3368


A vulnerability within the Software Updater functionality of Avira Security for Windows allowed an attacker with write access to the filesystem, to escalate his privileges in certain scenarios. The issue was fixed with Avira Security version 1.1.72.30556.


Published

2022-10-17T21:15:10.513

Last Modified

2025-05-10T03:15:21.137

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-276

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application avira avira_security ≤ 1.1.71.30554 Yes

References