CVE-2024-13959: Avg Tuneup

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Link Following Local Privilege Escalation Vulnerability in TuneupSvc.exe in AVG TuneUp 24.2.16593.9844 on Windows allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via creating a symbolic link and leveraging the service to delete a directory

Affected products

  • Avg Tuneup: version 24.2.16593.9844 only

Published 2025-05-09. Last modified 2026-06-17.