Vulnerabilities > Superantispyware > Professional X > High

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2020-24955 Link Following vulnerability in Superantispyware Professional X
SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware.
local
low complexity
superantispyware CWE-59
7.8