CVE-2024-7231 is a local privilege escalation vulnerability affecting Avast Cleanup Premium. This flaw allows a low-privileged attacker to achieve SYSTEM-level code execution by exploiting a symbolic link vulnerability within the Avast Cleanup Service to delete arbitrary files. Rated 7.8 HIGH on CVSS, it requires prior code execution on the target system. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
23.4CPE matchmatch criteria | cpe:2.3:a:avast:cleanup_premium:23.4:build_15592:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.