Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
640 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.7% | — | Eset Cyber SecurityEset Mobile SecurityEset Nod32 AntivirusEset Smart Security+1 | 5/3/2020 | 17/6/2026 | The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, Smart TV Security, and NOD32… | |
| Modificada | Media (5.5) | 1.2% | — | Avast Antivirus FOR LinuxAvast Antivirus PROAvast Antivirus PRO Plus | 28/2/2020 | 17/6/2026 | The Avast AV parsing engine allows virus-detection bypass via a crafted ZIP archive. This affects versions before 12 definitions 200114-0 of Antivirus Pro, Antivirus Pro Plus, and Antivirus for Linux. | |
| Modificada | Alta (7.8) | 1.5% | — | Quickheal Antivirus FOR ServerQuickheal Antivirus PROQuickheal Home SecurityQuickheal Internet Security+2 | 24/2/2020 | 17/6/2026 | The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GPFLAG in a ZIP archive. This affects Total Security, Home Security, Total Security Multi-Device, Internet Security, Total Security for Mac, AntiVirus Pro, AntiVirus for Server, and Total Security for Android. | |
| Modificada | Media (4.7) | 0.36% | — | Trendmicro Antivirus + Security 2019Trendmicro Internet Security 2019Trendmicro Maximum Security 2019Trendmicro Officescan Cloud+1 | 20/2/2020 | 17/6/2026 | The Trend Micro Security 2019 (15.0.0.1163 and below) consumer family of products is vulnerable to a denial of service (DoS) attack in which a malicious actor could manipulate a key file at a certain time during the system startup process to disable the product's malware protection functions or the entire product… | |
| Modificada | Media (5.5) | 2.9% | — | Avira Anti-malware SDKAvira Antivirus ServerAvira Antivirus FOR EndpointAvira Antivirus FOR Small Business+4 | 20/2/2020 | 17/6/2026 | Avira AV Engine before 8.3.54.138 allows virus-detection bypass via a crafted ISO archive. This affects versions before 8.3.54.138 of Antivirus for Endpoint, Antivirus for Small Business, Exchange Security (Gateway), Internet Security Suite for Windows, Prime, Free Security Suite for Windows, and Cross Platform… | |
| Modificada | Media (5.5) | 1.2% | — | Eset Cyber SecurityEset Internet SecurityEset Mobile SecurityEset Nod32 Antivirus+2 | 18/2/2020 | 17/6/2026 | ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, Smart TV… | |
| Modificada | Media (5.5) | 1.4% | — | Avira Antivir MailgateAvira Antivir Mailgate SuiteAvira Antivir PersonalAvira Antivir Sharepoint+6 | 12/2/2020 | 16/6/2026 | A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engine. | |
| Modificada | Alta (7.8) | 0.41% | — | Bitdefender Antivirus | 30/1/2020 | 17/6/2026 | A vulnerability in the AntivirusforMac binary as used in Bitdefender Antivirus for Mac allows an attacker to inject a library using DYLD environment variable to cause third-party code execution | |
| Modificada | Media (5.5) | 0.26% | — | Bitdefender Antivirus | 30/1/2020 | 17/6/2026 | A privilege escalation vulnerability in BDLDaemon as used in Bitdefender Antivirus for Mac allows a local attacker to obtain authentication tokens for requests submitted to the Bitdefender Cloud. This issue affects: Bitdefender Bitdefender Antivirus for Mac versions prior to 8.0.0. | |
| Modificada | Media (5.5) | 0.26% | — | Bitdefender Antivirus | 27/1/2020 | 17/6/2026 | An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker to elevate permissions to read protected directories. This issue affects: Bitdefender AV for Mac versions prior to 8.0.0. | |
| Modificada | Alta (7.8) | 0.73% | — | Trendmicro Antivirus + Security 2019Trendmicro Antivirus + Security 2020Trendmicro Internet Security 2019Trendmicro Internet Security 2020+4 | 18/1/2020 | 17/6/2026 | A Persistent Arbitrary Code Execution vulnerability exists in the Trend Micro Security 2020 (v160 and 2019 (v15) consumer familiy of products which could potentially allow an attacker the ability to create a malicious program to escalate privileges and attain persistence on a vulnerable system. | |
| Modificada | Media (6.7) | 0.82% | — | Trendmicro Antivirus + Security 2019Trendmicro Internet Security 2019Trendmicro Maximum Security 2019Trendmicro Premium Security 2019 | 18/1/2020 | 17/6/2026 | An arbitrary code execution vulnerability exists in the Trend Micro Security 2019 (v15) consumer family of products which could allow an attacker to gain elevated privileges and tamper with protected services by disabling or otherwise preventing them to start. An attacker must already have administrator privileges on… | |
| Modificada | Alta (7.8) | 0.71% | — | Symantec Endpoint ProtectionSymantec Endpoint Protection CloudSymantec Norton 360Symantec Norton Antivirus+5 | 9/1/2020 | 17/6/2026 | A Privilege Escalation vulnerability exists in Symantec Norton Antivirus, Norton AntiVirus with Backup, Norton Security, Norton Security with Backup, Norton Internet Security, Norton 360, Endpoint Protection Small Business Edition Cloud, and Endpoint Protection Cloud Client due to a DLL-preloading without path… | |
| Modificada | Alta (8.8) | 0.74% | — | Avira Free Antivirus | 31/12/2019 | 17/6/2026 | Avira Free Antivirus 15.0.1907.1514 is prone to a local privilege escalation through the execution of kernel code from a restricted user. | |
| Modificada | Alta (7.5) | 5.6% | — | Xmlsoft Libxml2Debian LinuxOracle Real User Experience InsightFedoraproject Fedora+8 | 24/12/2019 | 17/6/2026 | xmlParseBalancedChunkMemoryRecover in parser.c in libxml2 before 2.9.10 has a memory leak related to newDoc->oldNs. | |
| Modificada | Alta (7.5) | 3.2% | — | Trendmicro Antivirus | 24/12/2019 | 17/6/2026 | A privilege escalation vulnerability in Trend Micro Antivirus for Mac 2019 (v9.0.1379 and below) could potentially allow an attacker to create a symbolic link to a target file and modify it. | |
| Modificada | Alta (7.1) | 0.60% | — | Trendmicro Antivirus+ Security 2020Trendmicro Internet Security 2020Trendmicro Maximum Security 2020Trendmicro Premium Security 2020 | 20/12/2019 | 17/6/2026 | The Trend Micro Security 2020 consumer family of products contains a vulnerability that could allow a local attacker to disclose sensitive information or to create a denial-of-service condition on affected installations. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Modificada | Crítica (9.8) | 2.7% | — | Trendmicro Antivirus+ Security 2020Trendmicro Internet Security 2020Trendmicro Maximum Security 2020Trendmicro Premium Security 2020 | 9/12/2019 | 17/6/2026 | Trend Micro Security (Consumer) 2020 (v16.x) is affected by a vulnerability in where null pointer dereference errors result in the crash of application, which could potentially lead to possible unsigned code execution under certain circumstances. | |
| Modificada | Alta (7.8) | 0.52% | — | Trendmicro Antivirus + Security 2020Trendmicro Internet Security 2020Trendmicro Maximum Security 2020Trendmicro Premium Security 2020 | 2/12/2019 | 17/6/2026 | Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could execute a malicious program each time the service is started. | |
| Modificada | Alta (7.8) | 0.52% | — | Scanguard Antivirus | 14/11/2019 | 17/6/2026 | Scanguard through 2019-11-12 on Windows has Insecure Permissions for the installation directory, leading to privilege escalation via a Trojan horse executable file. | |
| Modificada | Media (6.1) | 0.85% | — | Avast Antivirus | 1/11/2019 | 17/6/2026 | A Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to execute JavaScript code via an SSID Name. | |
| Modificada | Crítica (9.8) | 1.6% | — | K7computing K7 Antivirus PremiumK7computing K7 Total SecurityK7computing K7 Ultimate Security | 28/10/2019 | 17/6/2026 | In K7 Antivirus Premium 16.0.xxx through 16.0.0120; K7 Total Security 16.0.xxx through 16.0.0120; and K7 Ultimate Security 16.0.xxx through 16.0.0120, the module K7TSHlpr.dll improperly validates the administrative privileges of the user, allowing arbitrary registry writes in the K7AVOptn.dll module to facilitate… | |
| Modificada | Alta (7.8) | 0.55% | — | Avast AntivirusAVG Anti-virus | 23/10/2019 | 17/6/2026 | An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8. A DLL Preloading vulnerability allows an attacker to implant %WINDIR%\system32\wbemcomn.dll, which is loaded into a protected-light process (PPL) and might bypass some of the self-defense mechanisms. This affects all components that… | |
| Modificada | Alta (7.8) | 0.30% | — | Eset Cyber SecurityEset Endpoint AntivirusEset Endpoint Security | 14/10/2019 | 17/6/2026 | ESET Cyber Security 6.7.900.0 for macOS allows a local attacker to execute unauthorized commands as root by abusing an undocumented feature in scheduled tasks. | |
| Modificada | Alta (7.8) | 0.42% | — | Pcprotect Antivirus | 7/10/2019 | 17/6/2026 | PC Protect Antivirus v4.14.31 installs by default to %PROGRAMFILES(X86)%\PCProtect with very weak folder permissions, granting any user full permission "Everyone: (F)" to the contents of the directory and its subfolders. In addition, the program installs a service called SecurityService that runs as LocalSystem. This… |