Eset
Eset Server Security: vulnerabilities and CVEs
Eset Server Security has 9 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs9
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3779 | Medium (5.5) | 0.20% | — | Jul 16, 2024 | Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security product inoperable, provided non-default preconditions were met. |
| CVE-2024-0353 | High (7.8) | 0.55% | — | Feb 15, 2024 | Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permission. |
| CVE-2023-5594 | High (8.6) | 0.38% | — | Dec 21, 2023 | Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate signed using the MD5 or SHA1 algorithm as trusted. |
| CVE-2023-3160 | High (7.8) | 0.18% | — | Aug 14, 2023 | The vulnerability potentially allows an attacker to misuse ESET’s file operations during the module update to delete or move files without having proper permissions. |
| CVE-2023-2847 | High (7.8) | 0.15% | — | Jun 15, 2023 | During internal security analysis, a local privilege escalation vulnerability has been identified. On a machine with the affected ESET product installed, it was possible for a user with lower privileges due to improper… |
| CVE-2021-37851 | High (7.8) | 0.21% | — | May 11, 2022 | Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the installer to run malicious code with higher privileges. This issue affects: ESET, spol. s… |
| CVE-2022-27167 | High (7.1) | 0.19% | — | May 10, 2022 | Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to exploit "Repair" and "Uninstall" features what may lead to arbitrary file deletion. This issue affects: ESET, spol. s r.o.… |
| CVE-2022-0615 | High (7.5) | 0.83% | — | Feb 25, 2022 | Use-after-free in eset_rtp kernel module used in ESET products for Linux allows potential attacker to trigger denial-of-service condition on the system. |
| CVE-2021-37852 | High (7.8) | 0.60% | — | Feb 9, 2022 | ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to escalate privileges in the context of NT AUTHORITY\SYSTEM. |