MEDIUM · 5.5

CVE-2016-4025

Avast Internet Security v11.x.x, Pro Antivirus v11.x.x, Premier v11.x.x, Free Antivirus v11.x.x, Business Security v11.x.x, Endpoint Protection v8.x.x, Endpoint Protection Plus v8.x.x, Endpoint Protec...

Vulnerability Description

Avast Internet Security v11.x.x, Pro Antivirus v11.x.x, Premier v11.x.x, Free Antivirus v11.x.x, Business Security v11.x.x, Endpoint Protection v8.x.x, Endpoint Protection Plus v8.x.x, Endpoint Protection Suite v8.x.x, Endpoint Protection Suite Plus v8.x.x, File Server Security v8.x.x, and Email Server Security v8.x.x allow attackers to bypass the DeepScreen feature via a DeviceIoControl call.

CVSS Score

5.5

MEDIUM

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
HIGH
Availability
NONE

Affected Products

VendorProductVersions
AvastBusiness Security11.1.2241
AvastFree Antivirus11.1.2241
AvastInternet Security11.1.2241
AvastPremier11.1.2241
AvastPro Antivirus11.1.2241
AvastEmail Server Security<= 8.0.1609
AvastEndpoint Protection<= 8.0.1609
AvastEndpoint Protection Plus8.0.1606
AvastEndpoint Protection Suite<= 8.0.1609
AvastEndpoint Protection Suite Plus<= 8.0.1609
AvastFile Server Security<= 8.0.1609

Related Weaknesses (CWE)

References

FAQ

What is CVE-2016-4025?

CVE-2016-4025 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Avast Internet Security v11.x.x, Pro Antivirus v11.x.x, Premier v11.x.x, Free Antivirus v11.x.x, Business Security v11.x.x, Endpoint Protection v8.x.x, Endpoint Protection Plus v8.x.x, Endpoint Protec...

How severe is CVE-2016-4025?

CVE-2016-4025 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-4025?

Check the references section above for vendor advisories and patch information. Affected products include: Avast Business Security, Avast Free Antivirus, Avast Internet Security, Avast Premier, Avast Pro Antivirus.