Filtered by vendor Webroot Subscriptions
Filtered by product Endpoint Agents Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-5754 1 Webroot 1 Endpoint Agents 2024-08-04 9.1 Critical
Webroot endpoint agents prior to version v9.0.28.48 allows remote attackers to trigger a type confusion vulnerability over its listening TCP port, resulting in crashing or reading memory contents of the Webroot endpoint agent.
CVE-2020-5755 1 Webroot 1 Endpoint Agents 2024-08-04 7.8 High
Webroot endpoint agents prior to version v9.0.28.48 did not protect the "%PROGRAMDATA%\WrData\PKG" directory against renaming. This could allow attackers to trigger a crash or wait upon Webroot service restart to rewrite and hijack dlls in this directory for privilege escalation.