Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-7280

MEDIUM NVD
CVSS Score 6.7
Severity MEDIUM
Published Apr 28, 2026
Vendor unknown

Description

AVACAST developed by eMPIA Technology has a Unquoted Service Path vulnerability, allowing privileged local attackers to place a malicious executable file in a specific directory, resulting in arbitrary code execution with system privileges when the AVACAST service starts.

References