CVE-2025-10905
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2025-11-11
Last updated on: 2025-11-11
Assigner: NortonLifeLock Inc.
Description
Description
Collision in MiniFilter driver in Avast Software Avast Free Antivirus before 25.9 on Windows allows a local attacker with administrative privileges to disable real-time protection and self-defense mechanisms.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| avast | avast_free_antivirus | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-693 | The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a collision in the MiniFilter driver of Avast Free Antivirus before version 25.9 on Windows. It allows a local attacker who already has administrative privileges to disable the software's real-time protection and self-defense mechanisms.
How can this vulnerability impact me? :
If exploited, this vulnerability can allow an attacker with administrative access to disable Avast Free Antivirus's real-time protection and self-defense features, potentially leaving the system unprotected against malware and other threats.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70