CVE-2019-18979: Claranova Adaware Antivirus

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Adaware antivirus 12.6.1005.11662 and 12.7.1055.0 has a quarantine flaw that allows privilege escalation. Exploitation uses an NTFS directory junction to restore a malicious DLL from quarantine into the system32 folder.

Affected products

  • Claranova Adaware Antivirus: from 12.6.1005.11662, up to and including 12.7.1055.0

Published 2020-03-18. Last modified 2026-06-17.