2023-05-10-Webroot-SecureAnywhere
CVE-2023-29818
(CVE-2023-29818) CWE-183 - Permissive List of Allowed Inputs: An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via the default allowlist feature being stored as non-admin. A local attacker can match their payload to a file name, file path, and file size of one of the files contained within the default allowlist to bypass protections.
CVE-2023-29819
(CVE-2023-29819) CWE-284 - Improper Access Control: An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via a crafted payload. A local attacker, as a non-administrator, can read the registry containing the default allowlist.