Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 572 respecto a la semana anterior
Críticas / altas1301▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)295▼ 215 respecto a la semana anterior
–

296 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
ModificadaAlta (7.8)0.33%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
ModificadaAlta (7)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
ModificadaAlta (7.8)0.33%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
ModificadaAlta (7)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
ModificadaAlta (7.8)0.33%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
ModificadaAlta (7.8)0.33%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
ModificadaAlta (8.8)3.7%—Bitdefender Internet Security 201821/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within emulator 0x102 in…
ModificadaAlta (8.8)3.9%—Bitdefender Internet Security 201821/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within emulator 0x10A in…
ModificadaAlta (8.8)6.5%—Bitdefender Internet Security 201821/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within cevakrnl.xmd. The…
ModificadaAlta (8.8)4.0%—Bitdefender Internet Security 201831/10/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security Internet Security 2018 prior to build 7.72918. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The…
ModificadaAlta (7.5)0.86%—Kaspersky Internet Security25/8/201717/6/2026
In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted.
ModificadaCrítica (9.8)1.5%—Kaspersky Internet Security25/8/201717/6/2026
In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized access to the product functionality by using Android IPC.
ModificadaAlta (7.8)0.74%—Panda Security Panda Antivirus PRO 2015Panda Security Panda Global Protection 2015Panda Security Panda Gold Protection 2015Panda Security Panda Internet Security 201525/7/201717/6/2026
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
ModificadaAlta (7.5)0.93%—Quickheal Antivirus PROQuickheal Internet SecurityQuickheal Total Security4/5/201717/6/2026
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed attacks against the product.
ModificadaCrítica (9.8)1.2%—Quickheal Antivirus PROQuickheal Internet SecurityQuickheal Total Security4/5/201717/6/2026
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
ModificadaCrítica (9.8)1.2%—Quickheal Antivirus PROQuickheal Internet SecurityQuickheal Total Security4/5/201717/6/2026
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
ModificadaCrítica (9.8)2.3%—Quickheal Antivirus PROQuickheal Internet SecurityQuickheal Total Security4/5/201717/6/2026
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to improper validation of dwCompressionSize of Microsoft WIM Header WIMHEADER_V1_PACKED. This vulnerability can be exploited to gain Remote…
ModificadaMedia (6.7)0.94%—Avira Free Security SuiteAvira Internet Security SuiteAvira Optimization SuiteAvira Total Security Suite21/3/201717/6/2026
Code injection vulnerability in Avira Total Security Suite 15.0 (and earlier), Optimization Suite 15.0 (and earlier), Internet Security Suite 15.0 (and earlier), and Free Security Suite 15.0 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any…
ModificadaMedia (6.7)0.75%—Bitdefender Antivirus PlusBitdefender Internet SecurityBitdefender Total Security21/3/201717/6/2026
Code injection vulnerability in Bitdefender Total Security 12.0 (and earlier), Internet Security 12.0 (and earlier), and Antivirus Plus 12.0 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any Bitdefender process via a "DoubleAgent" attack.…
ModificadaMedia (6.7)0.53%—Avast Free AntivirusAvast Internet SecurityAvast PremierAvast PRO Antivirus21/3/201717/6/2026
Code injection vulnerability in Avast Premier 12.3 (and earlier), Internet Security 12.3 (and earlier), Pro Antivirus 12.3 (and earlier), and Free Antivirus 12.3 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any Avast process via a…
ModificadaMedia (6.7)0.62%—AVG Anti-virusAVG Internet SecurityAVG Ultimate21/3/201717/6/2026
Code injection vulnerability in AVG Ultimate 17.1 (and earlier), AVG Internet Security 17.1 (and earlier), and AVG AntiVirus FREE 17.1 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any AVG process via a "DoubleAgent" attack. One perspective…
ModificadaMedia (6.7)0.70%—Trendmicro Antivirus+Trendmicro Internet SecurityTrendmicro Maximum SecurityTrendmicro Premium Security21/3/201717/6/2026
Code injection vulnerability in Trend Micro Maximum Security 11.0 (and earlier), Internet Security 11.0 (and earlier), and Antivirus+ Security 11.0 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any Trend Micro process via a "DoubleAgent"…
ModificadaMedia (5.5)0.57%—Kaspersky Anti-virusKaspersky Internet SecurityKaspersky Total Security6/1/201717/6/2026
A local denial of service vulnerability exists in window broadcast message handling functionality of Kaspersky Anti-Virus software. Sending certain unhandled window messages, an attacker can cause application termination and in the same way bypass KAV self-protection mechanism.
ModificadaMedia (5.5)0.50%—Kaspersky Internet Security6/1/201717/6/2026
A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky Internet Security KL1 driver. A specially crafted IOCTL signal can cause an access violation in KL1 kernel driver resulting in local system denial of service. An attacker can run a program from user-mode to trigger this…