Vulnerability Description
An issue discovered in 360 Total Security Antivirus through 11.0.0.1061 for Windows allows attackers to gain escalated privileges via Symbolic Link Follow to Arbitrary File Delete.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 360Totalsecurity | 360 Total Security | <= 11.0.0.1061 |
| Microsoft | Windows | - |
Related Weaknesses (CWE)
References
- https://github.com/mansk1es/CVE_360TSExploitThird Party Advisory
- https://github.com/mansk1es/CVE_360TSExploitThird Party Advisory
FAQ
What is CVE-2024-22014?
CVE-2024-22014 is a vulnerability with a CVSS score of 8.8 (HIGH). An issue discovered in 360 Total Security Antivirus through 11.0.0.1061 for Windows allows attackers to gain escalated privileges via Symbolic Link Follow to Arbitrary File Delete.
How severe is CVE-2024-22014?
CVE-2024-22014 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-22014?
Check the references section above for vendor advisories and patch information. Affected products include: 360Totalsecurity 360 Total Security, Microsoft Windows.