SEPTEMBER 23, 2026
Live Feed
Back to database
Case File

CVE-2022-26523

MEDIUM · CVSS 5.3 EPSS 0.25%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-05-08 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. It affects Windows. It may lead to a denial-of-service condition.

CVE
CVE-2022-26523
Severity
MEDIUM
CVSS
5.3
EPSS
0.25%
Windows

Original NVD Description

The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xbb94.