Avira: Deserialize, Delete and Escalate - The Proper Way to Use an AV
blog.quarkslab.com | research | #vulnerability-research | #privilege-escalation | #deserialization | #windows-security | #windows | #antivirus | #toctou | #avira
Summary
Quarkslab details three Avira Internet Security flaws — arbitrary file delete (CVE-2026-27748), insecure deserialization (CVE-2026-27749) and a TOCTOU folder delete — two escalate to SYSTEM.
- Published
- Collected
Skip to content