CVE-2019-7651 describes a vulnerability in Emsisoft Anti-Malware prior to version 2018.12, where the EPP.sys driver improperly handles device characteristics, allowing attackers to bypass Access Control Lists (ACLs). This flaw, rated 7.5 HIGH on CVSS, could lead to unintended impersonation or object creation due to a lack of secure open protection for files and directories within the device. While no public exploit code or active exploitation has been observed, and community discussion is minimal, the vulnerability has been patched in version 2018.12 and later.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2018.12CPE matchmatch criteria | cpe:2.3:a:emsisoft:anti-malware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.