CVE-2016-20059
EUVD-2016-1086704.04.2026, 14:16
IObit Malware Fighter 4.3.1 contains an unquoted service path vulnerability in the IMFservice and LiveUpdateSvc services that allows local attackers to escalate privileges. Attackers can insert a malicious executable file in the unquoted service path and trigger privilege escalation when the service restarts or the system reboots, executing code with LocalSystem privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| iobit | malware_fighter | 4.3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration