CVE-2020-36938: Winavr
High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.
WinAVR version 20100110 contains an insecure permissions vulnerability that allows authenticated users to modify system files and executables. Attackers can leverage the overly permissive access controls to potentially modify critical DLLs and executable files in the WinAVR installation directory.
Affected products
- Winavr Winavr: version 20100110 only
Published 2026-01-27. Last modified 2026-06-17.