VYPR
Vendor

Adaware

Products
3
CVEs
4
Across products
4
Status
Private

Products

3

Recent CVEs

4
  • CVE-2019-25287HigFeb 5, 2026
    risk 0.51cvss 7.8epss 0.00

    Adaware Web Companion version 4.8.2078.3950 contains an unquoted service path vulnerability in the WCAssistantService that allows local users to potentially execute code with elevated privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Lavasoft\Web…

  • CVE-2020-37102HigFeb 3, 2026
    risk 0.51cvss 7.8epss 0.00

    Adaware Web Companion 4.9.2159 contains an unquoted service path vulnerability in the WCAssistantService that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path to inject malicious executables that will be run with…

  • CVE-2022-31464HigJun 16, 2022
    risk 0.51cvss 7.8epss 0.00

    Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing the service binary path.

  • CVE-2019-18979HigMar 18, 2020
    risk 0.51cvss 7.8epss 0.00

    Adaware antivirus 12.6.1005.11662 and 12.7.1055.0 has a quarantine flaw that allows privilege escalation. Exploitation uses an NTFS directory junction to restore a malicious DLL from quarantine into the system32 folder.