Kaspersky Antivirus Certificate Handling Path Traversal

When Kaspersky https inspection is enabled, temporary certificates are created in %PROGRAMDATA% for validation. The naming pattern for files is {CN}.cer and CN can be modified to perform path traversals.

Leave a Reply