Vulnerability Description
Installers of Kaspersky Security Center and Kaspersky Security Center Web Console prior to 12 & prior to 12 Patch A were vulnerable to a DLL hijacking attack that allowed an attacker to elevate privileges in the system.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kaspersky | Security Center | < 12 |
| Kaspersky | Security Center Web Console | < 12 |
Related Weaknesses (CWE)
References
- https://support.kaspersky.com/general/vulnerability.aspx?el=12430#290720Broken Link
- https://support.kaspersky.com/general/vulnerability.aspx?el=12430#290720Broken Link
FAQ
What is CVE-2020-25045?
CVE-2020-25045 is a vulnerability with a CVSS score of 7.8 (HIGH). Installers of Kaspersky Security Center and Kaspersky Security Center Web Console prior to 12 & prior to 12 Patch A were vulnerable to a DLL hijacking attack that allowed an attacker to elevate privil...
How severe is CVE-2020-25045?
CVE-2020-25045 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-25045?
Check the references section above for vendor advisories and patch information. Affected products include: Kaspersky Security Center, Kaspersky Security Center Web Console.