Vulnerabilities > Superantispyware > Professional X

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2020-24955 Improper Privilege Management vulnerability in Superantispyware Professional X
SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware.
local
low complexity
superantispyware CWE-269
7.2