Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 85 respecto a la semana anterior
Críticas / altas1403▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
101 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.3) | 0.29% | — | Quickheal Total Security | 23/5/2022 | 17/6/2026 | A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, leading to execution of arbitrary code, via the installer not restricting the search path for required DLLs and then not verifying the signature of the DLLs it tries… | |
| Modificada | Alta (7) | 0.16% | — | Quickheal Total Security | 23/5/2022 | 17/6/2026 | Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, potentially leading to deletion of system files. This is achieved through exploiting the time between detecting a file as malicious and when the action of… | |
| Modificada | Crítica (9.8) | 3.1% | — | Kaspersky Anti-virusKaspersky Endpoint SecurityKaspersky Internet SecurityKaspersky Security Cloud+2 | 1/4/2022 | 17/6/2026 | Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy Zaytsev (Positive Technologies). | |
| Modificada | Media (5.5) | 0.20% | — | Kaspersky Anti-virusKaspersky Endpoint SecurityKaspersky Internet SecurityKaspersky Security Cloud+2 | 1/4/2022 | 17/6/2026 | A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security. A local user could cause Windows crash by running a specially crafted binary module. The fix was delivered automatically. Credits: (Straghkov Denis, Kurmangaleev Shamil,… | |
| Modificada | Alta (7.8) | 0.76% | — | Bitdefender Antivirus PlusBitdefender Endpoint Security ToolsBitdefender Internet SecurityBitdefender Total Security | 7/3/2022 | 17/6/2026 | Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to escalate local privileges to SYSTEM. This issue affects: Bitdefender… | |
| Modificada | Media (6.1) | 0.55% | — | Bitdefender Antivirus PlusBitdefender Endpoint Security ToolsBitdefender Internet SecurityBitdefender Total Security+1 | 7/3/2022 | 17/6/2026 | A NULL Pointer Dereference vulnerability in the messaging_ipc.dll component as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools, VPN Standalone allows an attacker to arbitrarily crash product processes and generate crashdump files. This issue affects: Bitdefender Total… | |
| Modificada | Alta (7.8) | 0.32% | — | Bitdefender Antivirus PlusBitdefender Internet SecurityBitdefender Total Security | 18/2/2022 | 17/6/2026 | A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with product settings via a specially crafted DLL file. This issue affects: Bitdefender Antivirus Plus versions prior to 24.0.26.136. Bitdefender Internet Security versions prior to 24.0.26.136.… | |
| Modificada | Alta (7.8) | 0.69% | — | Bitdefender Endpoint Security ToolsBitdefender Total Security | 28/10/2021 | 17/6/2026 | Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender Endpoint Security Tools for Windows, Total Security allows a local attacker to elevate privileges to NT AUTHORITY\SYSTEM This issue affects: Bitdefender Endpoint Security Tools for Windows… | |
| Modificada | Alta (7.8) | 0.96% | — | Bitdefender Endpoint Security ToolsBitdefender Total Security | 28/10/2021 | 17/6/2026 | Execution with Unnecessary Privileges vulnerability in Bitdefender Endpoint Security Tools, Total Security allows a local attacker to elevate to 'NT AUTHORITY\System. Impersonation enables the server thread to perform actions on behalf of the client but within the limits of the client's security context. This issue… | |
| Modificada | Alta (7.5) | 0.54% | — | Bitdefender Antivirus PlusBitdefender Internet SecurityBitdefender Total Security | 22/6/2021 | 17/6/2026 | Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Security allows an attacker to potentially bypass HTTP Strict Transport Security (HSTS) checks. This issue affects: Bitdefender Total Security versions prior to 25.0.7.29. Bitdefender Internet Security… | |
| Modificada | Alta (7.8) | 0.37% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K7TSMngr.exe. | |
| Modificada | Alta (7.8) | 0.27% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Incorrect Access Control. The impact is: gain privileges (local). | |
| Modificada | Alta (7.8) | 0.42% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K7TSMngr.exe. | |
| Modificada | Alta (7.8) | 0.42% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K7TSMngr.exe. | |
| Modificada | Alta (7.8) | 0.27% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: gain privileges (local). The component is: K7TSMngr.exe. | |
| Modificada | Alta (7.8) | 0.33% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 9/7/2026 | K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: Local Process Execution (local). The component is: K7Sentry.sys. | |
| Modificada | Alta (7.5) | 1.1% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | K7TSMngr.exe in K7Computing K7AntiVirus Premium 15.1.0.53 has a Memory Leak. | |
| Modificada | Alta (7.8) | 0.85% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Alta (7.8) | 0.85% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Media (5.5) | 0.65% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Media (5.5) | 0.69% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Media (5.5) | 0.69% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Media (5.5) | 0.69% | — | K7computing AntivriusK7computing Enterprise SecurityK7computing Total SecurityK7computing Ultimate Security | 11/1/2021 | 17/6/2026 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. | |
| Modificada | Media (6.7) | 0.36% | — | Quickheal Total Security | 30/11/2020 | 17/6/2026 | Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password. | |
| Modificada | Media (5.9) | 0.70% | — | Quickheal Total Security | 30/11/2020 | 17/6/2026 | Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text. |