Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-1586


Avast and AVG Antivirus for Windows were susceptible to a Time-of-check/Time-of-use (TOCTOU) vulnerability in the restore process leading to arbitrary file creation. The issue was fixed with Avast and AVG Antivirus version 22.11


Published

2023-04-19T19:15:06.837

Last Modified

2024-11-21T07:39:29.733

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-367
  • Type: Primary
    CWE-367

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application avast antivirus < 22.11 Yes
Application avg anti-virus < 22.11 Yes
Operating System microsoft windows - No

References