CVE-2019-25269: Netgate Amiti Antivirus

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service configurations. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges by placing executable files in specific directory locations.

Affected products

  • Netgate Amiti Antivirus: version 25.0.640 only

Published 2026-02-05. Last modified 2026-06-17.