VORANT. Threat Intelligence Sign in Get the full feed

ESET AV Remover flaw allows privilege escalation

routine vulnerability

ANSSI advisory warns of a privilege escalation vulnerability in ESET AV Remover versions prior to 1.6.17.0, patched by the vendor.

ANSSI (CERT-FR) published an advisory describing a privilege escalation vulnerability affecting ESET AV Remover in versions prior to 1.6.17.0. The flaw, tracked as CVE-2026-12858, could allow a local attacker to elevate privileges on an affected system. ESET has released a security bulletin addressing the issue, and the advisory directs administrators to apply the vendor-supplied patch.

No evidence of active exploitation is mentioned in the advisory. This is a standard vendor patch notification requiring organizations running ESET AV Remover to update to version 1.6.17.0 or later to remediate the vulnerability.

Mentioned in this report

Vulnerabilities CVE-2026-12858

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1143

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free