CVE-2024-22014

An issue discovered in 360 Total Security Antivirus through 11.0.0.1061 for Windows allows attackers to gain escalated privileges via Symbolic Link Follow to Arbitrary File Delete.
References
Link Resource
https://github.com/mansk1es/CVE_360TS Exploit Third Party Advisory
https://github.com/mansk1es/CVE_360TS Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:360totalsecurity:360_total_security:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

30 Jun 2025, 14:26

Type Values Removed Values Added
First Time Microsoft
360totalsecurity 360 Total Security
Microsoft windows
360totalsecurity
CPE cpe:2.3:a:360totalsecurity:360_total_security:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References () https://github.com/mansk1es/CVE_360TS - () https://github.com/mansk1es/CVE_360TS - Exploit, Third Party Advisory

13 Mar 2025, 20:15

Type Values Removed Values Added
CWE CWE-61

21 Nov 2024, 08:55

Type Values Removed Values Added
References () https://github.com/mansk1es/CVE_360TS - () https://github.com/mansk1es/CVE_360TS -

25 Oct 2024, 21:35

Type Values Removed Values Added
CWE CWE-61

22 Aug 2024, 21:35

Type Values Removed Values Added
CWE CWE-61
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
Summary
  • (es) Un problema descubierto en 360 Total Security Antivirus hasta la versión 11.0.0.1061 para Windows permite a los atacantes obtener privilegios aumentados a través de Symbolic Link Follow hasta la eliminación arbitraria de archivos.

15 Apr 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 18:15

Updated : 2025-06-30 14:26


NVD link : CVE-2024-22014

Mitre link : CVE-2024-22014

CVE.ORG link : CVE-2024-22014


JSON object : View

Products Affected

microsoft

  • windows

360totalsecurity

  • 360_total_security
CWE
CWE-61

UNIX Symbolic Link (Symlink) Following