3.6
CVSSv2

CVE-2020-14990

Published: 22/06/2020 Updated: 29/06/2020
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.1 | Impact Score: 5.2 | Exploitability Score: 1.8
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

IOBit Advanced SystemCare Free could allow a local authenticated malicious user to gain elevated privileges on the system, caused by a flaw in the Clean & Optimize feature. By using an NTFS junction and an Object Manager symbolic link, an attacker could exploit this vulnerability to gain elevated privileges to delete arbitrary file on the system.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

iobit advanced systemcare 13.5.0.263

Github Repositories

Arbitrary File Deletion

AdvancedSystemCare 1350263 [CVE-2020-14990] Arbitrary File Deletion More info daniels-it-blogblogspotcom/2020/06/arbitrary-file-deletion-in-iobithtml