Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
629 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.9) | 5.1% | — | Symantec AntivirusSymantec System CenterSymantec Antivirus Central Quarantine Server | 31/1/2011 | 16/6/2026 | Multiple stack-based buffer overflows in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allow remote attackers to execute arbitrary code via (1) a long string… | |
| Modificada | Baja (2.1) | 0.88% | 💥 Exploit | Kingsoft AntivirusKingsoftsecurity Kingsoft Antivirus | 20/1/2011 | 16/6/2026 | KisKrnl.sys 2011.1.13.89 and earlier in Kingsoft AntiVirus 2011 SP5.2 allows local users to cause a denial of service (crash) via a crafted request that is not properly handled by the KiFastCallEntry hook. | |
| Modificada | Media (5) | 3.3% | — | Intel Alert Management SystemSymantec AntivirusSymantec Endpoint Protection | 22/12/2010 | 16/6/2026 | The GetStringAMSHandler function in prgxhndl.dll in hndlrsvc.exe in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (AMS), as used in Symantec Antivirus Corporate Edition 10.1.4.4010 on Windows 2000 SP4 and Symantec Endpoint Protection before 11.x, does not… | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Kingsoft Antivirus | 15/9/2010 | 16/6/2026 | Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argument to IOCTL 0x80030004. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (9.3) | 7.8% | 💥 Exploit | Avast Antivirus Free | 26/8/2010 | 16/6/2026 | Untrusted search path vulnerability in avast! Free Antivirus version 5.0.594 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse mfc90loc.dll that is located in the same folder as an avast license (.avastlic) file. | |
| Modificada | Alta (7.2) | 1.6% | 💥 Exploit | Rising-global Rising Antivirus | 28/4/2010 | 16/6/2026 | Beijing Rising International Rising Antivirus 2008 through 2010 does not properly validate input to certain IOCTLs, including 0x83003C07, which allows local users to gain privileges via crafted IOCTL requests to the (1) HookCont.sys, (2) HookNtos.sys, (3) HOOKREG.sys, or (4) HookSys.sys device driver; or the (5)… | |
| Modificada | Alta (7.2) | 0.93% | 💥 Exploit | Avast Antivirus HomeAvast Antivirus Professional | 25/2/2010 | 16/6/2026 | Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial of service (system crash) or execute arbitrary code to gain privileges via IOCTL requests using crafted kernel addresses… | |
| Modificada | Alta (9.3) | 6.5% | — | Symantec Client SecuritySymantec Norton 360Symantec Norton AntivirusSymantec Norton Internet Security | 23/2/2010 | 16/6/2026 | Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symantec Client Security 3.0.x before 3.1 MR9, and 3.1.x before MR9; allows remote attackers to cause a denial of service (crash) and possibly… | |
| Modificada | Alta (10) | 19% | 💥 Exploit | Symantec AntivirusSymantec Client SecuritySymantec Endpoint Protection | 19/2/2010 | 16/6/2026 | Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9, and 10.2.x before MR4; and Symantec Client Security 3.0.x and 3.1.x before MR9 allows remote attackers to execute arbitrary code via a long argument to the… | |
| Modificada | Baja (1.9) | 0.62% | — | Symantec AntivirusSymantec Client SecuritySymantec Endpoint Protection | 19/2/2010 | 16/6/2026 | The on-demand scanning in Symantec AntiVirus 10.0.x and 10.1.x before MR9, AntiVirus 10.2.x, and Client Security 3.0.x and 3.1.x before MR9, when Tamper protection is disabled, allows remote attackers to cause a denial of service (prevention of on-demand scanning) via "specific events" that prevent the user from… | |
| Modificada | Alta (7.2) | 0.70% | 💥 Exploit | Quickheal Antivirus Plus 2009Quickheal Total Security 2009 | 4/1/2010 | 16/6/2026 | Quick Heal AntiVirus Plus 2009 10.00 SP1 and Quick Heal Total Security 2009 10.00 SP1 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs, as demonstrated by replacing quhlpsvc.exe. | |
| Modificada | Alta (7.2) | 0.37% | — | Pandasecurity Panda AntivirusPandasecurity Panda Global ProtectionPandasecurity Panda Internet Security | 7/12/2009 | 16/6/2026 | Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Avast Antivirus HomeAvast Antivirus Professional | 23/11/2009 | 16/6/2026 | Heap-based buffer overflow in aswRdr.sys (aka the TDI RDR driver) in avast! Home and Professional 4.8.1356.0 allows local users to cause a denial of service (memory corruption) or possibly gain privileges via crafted arguments to IOCTL 0x80002024. | |
| Modificada | Media (4.3) | 2.4% | — | Broadcom Anti-virusBroadcom Anti-virus FOR THE EnterpriseBroadcom Anti-virus SDKBroadcom Common Services+29 | 13/10/2009 | 16/6/2026 | Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to… | |
| Modificada | Alta (9.3) | 7.6% | — | Broadcom Anti-virusBroadcom Anti-virus FOR THE EnterpriseBroadcom Anti-virus SDKBroadcom Common Services+28 | 13/10/2009 | 16/6/2026 | Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to… | |
| Modificada | Alta (7.2) | 0.38% | — | Avast Antivirus HomeAvast Antivirus Professional | 1/10/2009 | 16/6/2026 | Unspecified vulnerability in ashWsFtr.dll in avast! Home and Professional for Windows before 4.8.1356 has unknown impact and local attack vectors. | |
| Modificada | Media (6.9) | 0.78% | 💥 Exploit | Avast Antivirus HomeAvast Antivirus Professional | 1/10/2009 | 16/6/2026 | aavmKer4.sys in avast! Home and Professional for Windows before 4.8.1356 does not properly validate input to IOCTLs (1) 0xb2d6000c and (2) 0xb2d60034, which allows local users to gain privileges via IOCTL requests using crafted kernel addresses that trigger memory corruption, a different vulnerability than… | |
| Modificada | Alta (7.2) | 0.95% | 💥 Exploit | Avast Antivirus HomeAvast Antivirus Professional | 1/10/2009 | 16/6/2026 | Stack-based buffer overflow in aswMon2.sys in avast! Home and Professional for Windows 4.8.1351, and possibly other versions before 4.8.1356, allows local users to cause a denial of service (system crash) and possibly gain privileges via a crafted IOCTL request to IOCTL 0xb2c80018. | |
| Modificada | Alta (7.8) | 0.29% | — | Trustport AntivirusTrustport PC Security | 30/9/2009 | 16/6/2026 | TrustPort Antivirus before 2.8.0.2266 and PC Security before 2.0.0.1291 use weak permissions (Everyone: Full Control) for files under %PROGRAMFILES%, which allows local users to gain privileges by replacing executables with Trojan horse programs. | |
| Modificada | Media (4.3) | 2.2% | — | Symantec AntivirusSymantec Client SecuritySymantec Norton AntivirusSymantec Norton Internet Security | 8/9/2009 | 16/6/2026 | Unspecified vulnerability in Symantec Norton AntiVirus 2005 through 2008; Norton Internet Security 2005 through 2008; AntiVirus Corporate Edition 9.0 before MR7, 10.0, 10.1 before MR8, and 10.2 before MR3; and Client Security 2.0 before MR7, 3.0, and 3.1 before MR8; when Internet Email Scanning is installed and… | |
| Modificada | Media (6.8) | 3.7% | — | Avast Antivirus | 2/7/2009 | 16/6/2026 | Multiple stack-based buffer overflows in avast! Linux Home Edition 1.0.5, 1.0.5-1, and 1.0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via a malformed (1) ISO or (2) RPM file. | |
| Modificada | Alta (7.2) | 0.96% | 💥 Exploit | Arcabit Arcavir 2009 Antivirus ProtectionArcabit Arcavir 2009 Home ProtectionArcabit Arcavir 2009 Internet SecurityArcabit Arcavir 2009 System Protection | 29/5/2009 | 16/6/2026 | The ps_drv.sys kernel driver in ArcaBit ArcaVir 2009 Antivirus Protection 9.4.3201.9 and earlier, ArcaVir 2009 Internet Security 9.4.3202.9 and earlier, ArcaVir 2009 System Protection 9.4.3203.9 and earlier, and ArcaBit 2009 Home Protection 9.4.3204.9 and earlier, allows local users to gain privileges via crafted… | |
| Modificada | Alta (10) | 3.4% | — | F-prot AntivirusF-prot AvesF-prot Milter | 22/5/2009 | 16/6/2026 | Multiple FRISK Software F-Prot anti-virus products, including Antivirus for Exchange, Linux on IBM zSeries, Linux x86 File Servers, Linux x86 Mail Servers, Linux x86 Workstations, Solaris Mail Servers, Antivirus for Windows, and others, allow remote attackers to bypass malware detection via a crafted CAB archive. | |
| Modificada | Media (5) | 4.2% | — | Symantec AntivirusSymantec Client SecuritySymantec Endpoint Protection | 30/4/2009 | 16/6/2026 | Symantec Reporting Server, as used in Symantec AntiVirus (SAV) Corporate Edition 10.1 before 10.1 MR8 and 10.2 before 10.2 MR2, Symantec Client Security (SCS) before 3.1 MR8, and the Symantec Endpoint Protection Manager (SEPM) component in Symantec Endpoint Protection (SEP) before 11.0 MR2, allows remote attackers to… | |
| Modificada | Alta (9.3) | 8.0% | — | Symantec AntivirusSymantec Antivirus Central Quarantine ServerSymantec Client SecuritySymantec Endpoint Protection+1 | 29/4/2009 | 16/6/2026 | XFR.EXE in the Intel File Transfer service in the console in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symantec AntiVirus Server; Symantec AntiVirus Central Quarantine Server; Symantec AntiVirus (SAV) Corporate Edition 9 before 9.0 MR7, 10.0 and 10.1 before 10.1 MR8, and 10.2… |