Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2556▼ 352 respecto a la semana anterior
Críticas / altas1335▲ 66 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 434 respecto a la semana anterior
–

7 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)3.5%—Pandasecurity Panda AntivirusPandasecurity Panda Antivirus PROPandasecurity Panda DomePandasecurity Panda Global Protection+223/5/201917/6/2026
Insecure permissions of the section object Global\PandaDevicesAgentSharedMemory and the event Global\PandaDevicesAgentSharedMemoryChange in Panda products before 18.07.03 allow attackers to queue an event (as an encrypted JSON string) to the system service AgentSvc.exe, which leads to privilege escalation when the…
ModificadaAlta (7.8)0.74%—Panda Security Panda Antivirus PRO 2015Panda Security Panda Global Protection 2015Panda Security Panda Gold Protection 2015Panda Security Panda Internet Security 201525/7/201717/6/2026
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
ModificadaAlta (7.2)0.57%—Pandasecurity Panda AV PRO 2014Pandasecurity Panda Global Protection 2014Pandasecurity Panda Internet Security 201426/8/201417/6/2026
Heap-based buffer overflow in the PavTPK.sys kernel mode driver of Panda Security 2014 products before hft131306s24_r1 allows local users to gain privileges via a crafted argument to a 0x222008 IOCTL call.
ModificadaAlta (7.2)0.37%—Pandasecurity Panda AV PRO 2014Pandasecurity Panda Global Protection 2014Pandasecurity Panda Gold ProtectionPandasecurity Panda Internet Security 201423/5/201417/6/2026
Unspecified vulnerability in Panda Gold Protection and Global Protection 2014 7.01.01 and earlier, Internet Security 2014 19.01.01 and earlier, and AV Pro 2014 13.01.01 and earlier allows local users to gain privileges via unspecified vectors.
ModificadaMedia (6.2)0.29%—Pandasecurity Panda Internet Security 201025/8/201216/6/2026
Race condition in Panda Internet Security 2010 15.01.00 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler…
ModificadaAlta (7.2)0.37%—Pandasecurity Panda AntivirusPandasecurity Panda Global ProtectionPandasecurity Panda Internet Security7/12/200916/6/2026
Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs.
ModificadaAlta (7.2)1.1%—Panda Antivirus AND FirewallPanda Internet Security24/3/200816/6/2026
The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or kernel panic), overwrite memory, or execute arbitrary code via a crafted IOCTL request that triggers an out-of-bounds write of kernel memory.