Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kaspersky kaspersky internet security 2019 |
||
kaspersky secure connection 3.0 |
||
kaspersky secure connection 4.0 |
||
kaspersky security cloud 2019 |
||
kaspersky security cloud 2020 |
||
kaspersky total security 2019 |
||
kaspersky total security 2020 |