<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:eset:av_remover:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3aesetav_remover/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Wed, 09 Sep 2026 18:50:16 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3aesetav_remover/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Privilege Escalation Vulnerability in ESET AV Remover</title><link>https://feed.craftedsignal.io/briefs/2026-09-eset-privesc/</link><pubDate>Wed, 09 Sep 2026 18:50:16 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-eset-privesc/</guid><description>A privilege escalation vulnerability, CVE-2026-12858, in ESET AV Remover allows local attackers to gain elevated privileges on affected host systems.</description><content:encoded><![CDATA[<p>The French National Cybersecurity Agency (ANSSI) has published an advisory regarding a security vulnerability found in ESET AV Remover, an ESET utility used for uninstalling antivirus software. The vulnerability, tracked as CVE-2026-12858, permits an attacker with local access to the system to escalate privileges. This flaw resides in versions of AV Remover prior to 1.6.17.0. Security teams should prioritize patching this utility, as successful exploitation enables an attacker to move from a lower-privileged user context to higher-level access, potentially resulting in full system compromise. The issue was disclosed by ESET in their security bulletin ca9000 on September 9, 2026.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2026-12858 allows an attacker to achieve privilege escalation on a compromised machine. This grants the attacker the ability to execute code with elevated rights, bypass standard security controls, and perform unauthorized modifications to the operating system or installed applications.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Update all instances of ESET AV Remover to version 1.6.17.0 or later immediately to mitigate CVE-2026-12858. Consult the ESET security bulletin ca9000 for specific deployment procedures regarding the patch.</p>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>privilege-escalation</category><category>vulnerability</category><category>security-update</category></item></channel></rss>