A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling allow a low-privileged local user to restore quarantined files into protected system directories. This behavior can be abused by a local attacker to place files in high-privilege locations, potentially leading to privilege escalation.
History

Tue, 03 Feb 2026 18:15:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling allow a low-privileged local user to restore quarantined files into protected system directories. This behavior can be abused by a local attacker to place files in high-privilege locations, potentially leading to privilege escalation.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-02-03T17:40:22.016Z

Reserved: 2026-01-09T00:00:00.000Z

Link: CVE-2025-69875

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-02-03T18:16:17.150

Modified: 2026-02-03T18:16:17.150

Link: CVE-2025-69875

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.