GHSA-rxwq-f446-pp3jHighCVSS 7.8
Intego Antivirus for Windows through 3.0.0.1 contains a link following vulnerability in its...
🔗 CVE IDs covered (1)
📋 Description
Intego Antivirus for Windows through 3.0.0.1 contains a link following vulnerability in its optimization module that allows local unprivileged users to delete arbitrary folders as SYSTEM. Attackers can replace a scanned duplicate file's directory with a junction to C:\Config.msi and abuse Windows Installer rollback to execute code as SYSTEM.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-107707
- https://blog.quarkslab.com/milking-the-last-drop-of-intego-time-for-windows-to-get-its-lpe.html
- https://www.intego.com
- https://www.vulncheck.com/advisories/intego-antivirus-through-3.0.0.1-local-privilege-escalation-via-optimization-module-junction
- https://github.com/advisories/GHSA-rxwq-f446-pp3j