High severity7.8NVD Advisory· Published Sep 1, 2020· Updated Jun 17, 2026
CVE-2020-24955
CVE-2020-24955
Description
SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware.
Affected products
3- cpe:2.3:a:superantispyware:professional_x:*:*:*:*:trial:*:*:*Range: <10.0.1206
- SUPERAntiSyware/SUPERAntiSyware Professional X Trialdescription
- Range: 10.0.1206
Patches
Vulnerability mechanics
References
1- www.youtube.com/watchnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.