Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
116 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 92% | — | Aladdin EsafeComodo AntivirusEmsisoft Anti-malwareF-secure Anti-virus+5 | 21/3/2012 | 16/6/2026 | The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, and nProtect Anti-Virus… | |
| Modificada | Media (5) | 4.2% | — | Bitdefender Antivirus | 7/4/2009 | 16/6/2026 | Multiple integer overflows in the scanning engine in Bitdefender for Linux 7.60825 and earlier allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed (1) NeoLite and (2) ASProtect packed PE file. | |
| Modificada | Media (4.3) | 30% | — | Bitdefender Internet Security | 9/3/2009 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in BitDefender Internet Security 2009 allows user-assisted remote attackers to inject arbitrary web script or HTML via the filename of a virus-infected file, as demonstrated by a filename inside a (1) rar or (2) zip archive file. | |
| Modificada | Alta (9.3) | 11% | 💥 Exploit | Bitdefender AntivirusBitdefenderBullguard Internet SecuritySoftware602 Groupware Server | 10/12/2008 | 16/6/2026 | Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Server 6.0.08.1118 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted… | |
| Modificada | Media (4.9) | 0.37% | — | Bitdefender Antivirus | 30/4/2008 | 16/6/2026 | BitDefender Antivirus 2008 20080118 and earlier allows local users to cause a denial of service (system crash) via an invalid pointer to the CLIENT_ID structure in a call to the NtOpenProcess hooked System Service Descriptor Table (SSDT) function. | |
| Modificada | Alta (7.8) | 8.5% | 💥 Exploit | Bitdefender Update Server | 23/1/2008 | 16/6/2026 | Directory traversal vulnerability in BitDefender Update Server (http.exe), as used in BitDefender products including Security for Fileservers and Enterprise Manager (BDEM), allows remote attackers to read arbitrary files via .. (dot dot) sequences in an HTTP request. | |
| Modificada | Alta (9.3) | 8.1% | 💥 Exploit | Bitdefender Online Anti-virus Scanner | 30/11/2007 | 16/6/2026 | A certain ActiveX control in (1) OScan8.ocx and (2) Oscan81.ocx in BitDefender Online Anti-Virus Scanner 8.0 allows remote attackers to execute arbitrary code via a long argument to the InitX method that begins with a "%%" sequence, which is misinterpreted as a Unicode string and decoded twice, leading to improper… | |
| Modificada | Crítica (9.8) | 27% | 💥 Exploit | Bitdefender AntivirusBitdefender Internet SecurityBitdefender Total Security | 1/11/2007 | 16/6/2026 | Unspecified vulnerability in BitDefender allows attackers to execute arbitrary code via unspecified vectors, aka EEYEB-20071024. NOTE: as of 20071029, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for… | |
| Modificada | Alta (7.2) | 0.41% | — | Bitdefender Client | 19/1/2007 | 16/6/2026 | Format string vulnerability in the log creation functionality of BitDefender Client Professional Plus 8.02 allows attackers to execute arbitrary code via certain scan job settings. | |
| Modificada | Alta (10) | 7.4% | — | Softwin BitdefenderSoftwin Bitdefender AntivirusSoftwin Bitdefender Internet SecuritySoftwin Bitdefender Mail Protection+1 | 18/12/2006 | 16/6/2026 | Integer overflow in the packed PE file parsing implementation in BitDefender products before 20060829, including Antivirus, Antivirus Plus, Internet Security, Mail Protection for Enterprises, and Online Scanner; and BitDefender products for Microsoft ISA Server and Exchange 5.5 through 2003; allows remote attackers to… | |
| Modificada | Media (5) | 1.4% | — | Softwin Bitdefender Mail Protection | 10/12/2006 | 16/6/2026 | BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file. | |
| Modificada | Media (5.1) | 1.9% | — | Softwin Bitdefender Antivirus | 14/10/2005 | 16/6/2026 | Multiple interpretation error in unspecified versions of BitDefender Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are… | |
| Modificada | Alta (7.5) | 3.5% | — | Softwin Bitdefender | 5/10/2005 | 16/6/2026 | Format string vulnerability in the logging functionality in BitDefender AntiVirus 7.2 through 9 allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in file or directory name. | |
| Modificada | Media (5) | 1.4% | — | Softwin Bitdefender Engine | 19/7/2005 | 16/6/2026 | BitDefender Engine 1.6.1 and earlier does not properly scan all attachments, which allows remote attackers to bypass virus scanning via begin and end commands in the body of the e-mail, which BitDefender treats as a uuencoded attachment and stops scanning afterwards. | |
| Modificada | Baja (1.2) | 0.30% | — | Softwin Bitdefender Antivirus | 2/5/2005 | 16/6/2026 | Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lack of quoting of the full pathname when executing a process. | |
| Modificada | Media (5) | 6.8% | 💥 Exploit | Softwin Bitdefender | 19/4/2004 | 16/6/2026 | The AVXSCANONLINE.AvxScanOnlineCtrl.1 ActiveX control in BitDefender Scan Online allows remote attackers to (1) obtain sensitive information such as system drives and contents or (2) use the RequestFile method to download and execute arbitrary code via an object codebase that uses bitdefender.cab. |