Back to Database
Status published
High
CVE-2024-6510
Local privilege escalation vulnerability in AVG Internet Security
Vulnerability Description
Local Privilege Escalation in AVG Internet Security v24 on Windows allows a local unprivileged user to escalate privileges to SYSTEM via COM-Hijacking.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-6510
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Kolja Grassmann <kolja.grassmann@cirosec.de>
References
More from AVG
View All →CVE-2024-7237
AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability
High
7.8
CVE-2024-7236
AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vulnerability
Medium
5.3
CVE-2024-7235
AVG AntiVirus Free Link Following Denial-of-Service Vulnerability
Medium
6.1
CVE-2024-7234
AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability
High
7.8
CVE-2024-13960
Link Following Local Privilege Escalation Vulnerability in AVG TuneUp Version 23.4
High
7.8
Affected Vendor
Affected Software
Internet Security
Vulnerable Versions:
0, 24.1
Timeline
Official Publish:
September 12th, 2024
Last Modified:
September 12th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
MITRE ATT&CK TTPs
T1190
Exploit Public-Facing Application
Initial Access
T1059
Command and Scripting Interpreter
Execution
T1068
Exploitation for Privilege Escalation
Privilege Escalation
T1565.002
Stored Data Manipulation
Impact
T1574
Hijack Execution Flow
Persistence
T1574.001
DLL Search Order Hijacking
Privilege Escalation
T1547
Boot or Logon Autostart Execution
Persistence
T1036
Masquerading
Defense Evasion
T1222
File and Directory Permissions Modification
Defense Evasion
T1005
Data from Local System
Collection
T1078
Valid Accounts
Persistence
T1562
Impair Defenses
Defense Evasion