DLL Hijacking Vulnerabilities in Avast Premium Security before v21.11.2500 via instup.exe and wsc_proxy.exe

DLL Hijacking Vulnerabilities in Avast Premium Security before v21.11.2500 via instup.exe and wsc_proxy.exe

CVE-2022-28965 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H

Multiple DLL hijacking vulnerabilities via the components instup.exe and wsc_proxy.exe in Avast Premium Security before v21.11.2500 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via a crafted DLL file.

Learn more about our Web Application Penetration Testing UK.