{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aesetav_remover/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:eset:av_remover:*:*:*:*:*:*:*:*"],"_cs_cves":[{"id":"CVE-2026-12858"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["AV Remover (\u003c 1.6.17.0)"],"_cs_severities":["high"],"_cs_tags":["privilege-escalation","vulnerability","security-update"],"_cs_type":"advisory","_cs_vendors":["ESET"],"content_html":"\u003cp\u003eThe French National Cybersecurity Agency (ANSSI) has published an advisory regarding a security vulnerability found in ESET AV Remover, an ESET utility used for uninstalling antivirus software. The vulnerability, tracked as CVE-2026-12858, permits an attacker with local access to the system to escalate privileges. This flaw resides in versions of AV Remover prior to 1.6.17.0. Security teams should prioritize patching this utility, as successful exploitation enables an attacker to move from a lower-privileged user context to higher-level access, potentially resulting in full system compromise. The issue was disclosed by ESET in their security bulletin ca9000 on September 9, 2026.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-12858 allows an attacker to achieve privilege escalation on a compromised machine. This grants the attacker the ability to execute code with elevated rights, bypass standard security controls, and perform unauthorized modifications to the operating system or installed applications.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003eUpdate all instances of ESET AV Remover to version 1.6.17.0 or later immediately to mitigate CVE-2026-12858. Consult the ESET security bulletin ca9000 for specific deployment procedures regarding the patch.\u003c/p\u003e\n","date_modified":"2026-09-09T18:50:16Z","date_published":"2026-09-09T18:50:16Z","id":"https://feed.craftedsignal.io/briefs/2026-09-eset-privesc/","summary":"A privilege escalation vulnerability, CVE-2026-12858, in ESET AV Remover allows local attackers to gain elevated privileges on affected host systems.","title":"Privilege Escalation Vulnerability in ESET AV Remover","url":"https://feed.craftedsignal.io/briefs/2026-09-eset-privesc/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:eset:av_remover:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}