CVE-2020-12463: Avira Software Updater

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An elevation of privilege vulnerability exists in Avira Software Updater before 2.0.6.27476 due to improperly handling file hard links. This allows local users to obtain take control of arbitrary files.

Affected products

  • Avira Software Updater: before 2.0.6.27476 (fixed in 2.0.6.27476)

Published 2020-05-05. Last modified 2026-06-17.