CVE-2025-3500

CRITICAL

Avast Antivirus 25.1.981.6-25.3 - Privilege Escalation via Integer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2025-3500. PoCs published by adminlove520, chicken3962.

AI-analyzed exploit summary The repository claims to provide a PoC for CVE-2025-3500 but lacks actual exploit code, instead directing users to external downloads. The README contains detailed technical descriptions but no functional code, raising suspicions of a social engineering lure.

Description

Integer Overflow or Wraparound vulnerability in Avast Antivirus (25.1.981.6) on Windows allows Privilege Escalation.This issue affects Antivirus: from 25.1.981.6 before 25.3.

Exploits (2)

github SUSPICIOUS 2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-3500

The repository claims to provide a PoC for CVE-2025-3500 but lacks actual exploit code, instead directing users to external downloads. The README contains detailed technical descriptions but no functional code, raising suspicions of a social engineering lure.

Classification
Suspicious 90%
Attack Type
Lpe
Complexity
Theoretical
Reliability
Theoretical
Target: Avast Antivirus 25.1.981.6
No auth needed
Prerequisites: Windows host · Avast Antivirus 25.1.981.6 installed
devstral-2 · analyzed Feb 27, 2026 Full analysis →
nomisec WORKING POC
by chicken3962 · poc
https://github.com/chicken3962/CVE-2025-3500-Poc

This repository provides a proof-of-concept exploit for CVE-2025-3500, an integer overflow vulnerability in Avast Antivirus 25.1.981.6, leading to privilege escalation via crafted API calls. The exploit includes a compiled binary and batch script to trigger the vulnerability.

Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Avast Antivirus 25.1.981.6
No auth needed
Prerequisites: Windows host with Avast Antivirus 25.1.981.6 installed · Administrative privileges for setup · Basic knowledge of PowerShell and Windows command-line tools
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 9.0
EPSS 0.0046
EPSS Percentile 36.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-190
Status published
Products (1)
avast/antivirus 25.1.981.6 - 25.3
Published Dec 01, 2025
Tracked Since Feb 18, 2026