WatchDog Anti-Virus 1.8.640(Windows 版)在隔离文件恢复过程中存在“文件访问前链接解析不当”的漏洞。该漏洞允许本地低权限攻击者通过在原始文件路径处创建目录联接(directory junction),并诱使管理员恢复被隔离的文件,从而使被隔离的文件被写入任意文件系统位置。这可能导致受保护文件被篡改,或通过 DLL 劫持(DLL hijacking)实现 SYSTEM 级代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| WatchDog | Anti-Virus | 1.8.640 ~ 1.8.804 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-92254 | 6.9 MEDIUM | WatchDog Antivirus kernel driver arbitrary file deletion via unauthenticated IOCTL |
| CVE-2026-92252 | 5.9 MEDIUM | Incorrect Default Permissions in WatchDog Anti-Virus Installation Directory |
No comments yet