High severity7.8NVD Advisory· Published Mar 29, 2023· Updated Jun 17, 2026
CVE-2023-28892
CVE-2023-28892
Description
Malwarebytes AdwCleaner 8.4.0 runs as Administrator and performs an insecure file delete operation on C:\AdwCleaner\Logs\AdwCleaner_Debug.log in which the target location is user-controllable, allowing a non-admin user to escalate privileges to SYSTEM via a symbolic link.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:malwarebytes:adwcleaner:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:malwarebytes:adwcleaner:*:*:*:*:*:*:*:*range: <=8.4.0
- (no CPE)
- (no CPE)range: <=8.4.0
Patches
Vulnerability mechanics
References
3- www.malwarebytes.com/secure/cves/cve-2023-28892nvdVendor Advisory
- malwarebytes.comnvdProduct
- forums.malwarebytes.com/topic/307429-release-adwcleaner-841/nvd
News mentions
0No linked articles in our index yet.