top of page
perceptive_background_267k.jpg

sheed AntiVirus 2.3 contains an unquoted service path vulnerability in the ShavProt service that allows local attackers to escalate privileges by exploiting the…

Published:

3 april 2026 om 22:00:00

Alert date:

4 april 2026 om 15:05:07

Source:

nvd.nist.gov

Click to open the original link from this advisory

Security Tools

CVE-2016-20061 affects Sheed AntiVirus 2.3, containing an unquoted service path vulnerability in the ShavProt service. Local attackers can exploit this vulnerability to escalate privileges by inserting a malicious executable in the unquoted path. When the service restarts or system reboots, the malicious code executes with LocalSystem privileges. This vulnerability allows for privilege escalation attacks on systems running the affected antivirus software. The vulnerability has been documented with proof-of-concept exploits available.

Technical details

Mitigation steps:

Affected products:

Sheed AntiVirus

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page