Learn about CVE-2019-13356 affecting Total Defense Anti-virus 9.0.0.773. Discover how local attackers can exploit insecure access control, leading to privilege escalation. Find mitigation steps here.
Total Defense Anti-virus 9.0.0.773 insecure access control vulnerability allows local attackers to hijack bdcore.dll, leading to privilege escalation.
Understanding CVE-2019-13356
This CVE involves a security vulnerability in Total Defense Anti-virus 9.0.0.773 that enables local attackers to escalate privileges by exploiting insecure access control.
What is CVE-2019-13356?
The vulnerability in Total Defense Anti-virus 9.0.0.773 allows local attackers to take control of the bdcore.dll file by exploiting insecure access control in a specific directory used by the AMRT service. This manipulation can result in privilege escalation when the AMRT service loads the DLL.
The Impact of CVE-2019-13356
The exploitation of this vulnerability can lead to local privilege escalation, enabling attackers to gain higher levels of access on the affected system.
Technical Details of CVE-2019-13356
Total Defense Anti-virus 9.0.0.773 insecure access control vulnerability technical details.
Vulnerability Description
The vulnerability arises from insecure access control for the directory %PROGRAMDATA%\TotalDefense\Consumer\ISS\9\bd\TDUpdate2, allowing local attackers to hijack bdcore.dll, leading to privilege escalation when the AMRT service loads the DLL.
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Steps to mitigate and prevent the CVE-2019-13356 vulnerability.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates