CVE-2026-92253
Arbitrary File Write via Directory Junction in WatchDog Anti-Virus Quarantine Restoration
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper link resolution before file access in the quarantine restoration process of WatchDog Anti-Virus 1.8.640 on Windows allows local, low-privileged attackers to cause a quarantined file to be written to an arbitrary filesystem location by creating a directory junction at the original file path and persuading an administrator to restore the file. This may enable modification of protected files or SYSTEM-level code execution through DLL hijacking.
| CWE | CWE-59 |
| Vendor | watchdog |
| Product | anti-virus |
| Published | Sep 20, 2026 |
Stay Ahead of the Next One
Get instant alerts for watchdog anti-virus
Be the first to know when new unknown vulnerabilities affecting watchdog anti-virus are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
WatchDog / Anti-Virus
1.8.640 < 1.8.804
References
Credits
Patrick Tung