U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2020-11446

Change History

Initial Analysis by NIST 5/07/2020 4:01:21 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:eset:antivirus_and_antispyware:*:*:*:*:*:*:*:* versions from (including) 1553 up to (including) 1560
     *cpe:2.3:a:eset:endpoint_antivirus:-:*:*:*:*:-:*:*
     *cpe:2.3:a:eset:endpoint_security:-:*:*:*:*:*:*:*
     *cpe:2.3:a:eset:file_security:-:*:*:*:*:windows_server:*:*
     *cpe:2.3:a:eset:internet_security:-:*:*:*:*:*:*:*
     *cpe:2.3:a:eset:mail_security:-:*:*:*:*:domino:*:*
     *cpe:2.3:a:eset:mail_security:-:*:*:*:*:exchange_server:*:*
     *cpe:2.3:a:eset:mail_security:-:*:*:*:*:kerio:*:*
     *cpe:2.3:a:eset:mail_security:-:*:*:*:*:sharepoint_server:*:*
     *cpe:2.3:a:eset:nod32_antivirus:-:*:*:*:*:*:*:*
     *cpe:2.3:a:eset:nod32_antivirus:-:*:*:*:business:*:*:*
     *cpe:2.3:a:eset:smart_security:-:*:*:*:-:*:*:*
     *cpe:2.3:a:eset:smart_security:-:*:*:*:business:*:*:*
     *cpe:2.3:a:eset:smart_security:-:*:*:*:premium:*:*:*
Added CVSS V2

								
							
							
						
NIST (AV:L/AC:L/Au:N/C:P/I:P/A:P)
Added CVSS V3.1

								
							
							
						
NIST AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
NIST CWE-269
Changed Reference Type
https://support.eset.com/en/ca7489-local-privilege-escalation-vulnerability-fixed-in-eset-products-for-windows No Types Assigned
https://support.eset.com/en/ca7489-local-privilege-escalation-vulnerability-fixed-in-eset-products-for-windows Vendor Advisory