4.4
CVSSv2

CVE-2019-18215

Published: 18/11/2019 Updated: 21/07/2021
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in signmgr.dll 6.5.0.819 in Comodo Internet Security up to and including 12.0. A DLL Preloading vulnerability allows an malicious user to implant an unsigned DLL named iLog.dll in a partially unprotected product directory. This DLL is then loaded into a high-privileged service before the binary signature validation logic is loaded, and might bypass some of the self-defense mechanisms.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

comodo comodo internet security