Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
eset smart security premium vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2020-10180
The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions prior to 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Andr...
Eset Nod32 Antivirus 4
Eset Smart Security
Eset Nod32 Antivirus
Eset Mobile Security
Eset Smart Tv Security
Eset Cyber Security
7.8
CVSSv3
CVE-2021-37851
Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the installer to run malicious code with higher privileges. This issue affects: ESET, spol. s r.o. ESET NOD32 Antivirus 11.2 versions before 15.1.12.0. ES...
Eset Smart Security
Eset Internet Security
Eset Nod32 Antivirus
Eset Endpoint Antivirus
Eset Endpoint Security
Eset Security
Eset Mail Security
Eset Server Security
Eset File Security
7.8
CVSSv3
CVE-2018-0649
Untrusted search path vulnerability in the installers of multiple Canon IT Solutions Inc. software programs (ESET Smart Security Premium, ESET Internet Security, ESET Smart Security, ESET NOD32 Antivirus, DESlock+ Pro, and CompuSec (all programs except packaged ones)) allows an m...
Eset Internet Security -
Eset Smart Security -
Eset Nod32 Antivirus -
Eset Deslock+ Pro -
Eset Compusec -
Eset Smart Security Premium -
7.5
CVSSv3
CVE-2020-10193
ESET Archive Support Module prior to 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. This affects versions prior to 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mo...
Eset Smart Security
Eset Nod32 Antivirus
Eset Mobile Security
Eset Smart Tv Security
Eset Mobile Security 1294
Eset Internet Security
Eset Cyber Security
7.1
CVSSv3
CVE-2022-27167
Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows malicious user to exploit "Repair" and "Uninstall" features what may lead to arbitrary file deletion. This issue affects: ESET, spol. s r.o. ESET NOD32 Antivirus 11.2 versions ...
Eset Smart Security
Eset Internet Security
Eset Nod32 Antivirus
Eset Endpoint Antivirus
Eset Endpoint Security
Eset Security
Eset Mail Security
Eset Server Security
Eset File Security
5.5
CVSSv3
CVE-2023-7043
Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with the NT AUTHORITY\NetworkService permissions.
Eset Mail Security 10.1.10012.0
Eset Smart Security Premium
Eset Internet Security
Eset Nod32 Antivirus
Eset Endpoint Antivirus
Eset Endpoint Security
5.5
CVSSv3
CVE-2020-26941
A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions. The possibility of exploiting this vulnerability is limited and can only take place durin...
Eset Security
Eset Mail Security
Eset File Security
Eset Endpoint Security
Eset Endpoint Antivirus
Eset Smart Security
Eset Internet Security
Eset Nod32 Antivirus
Eset Internet Security 1294
5.5
CVSSv3
CVE-2020-9264
ESET Archive Support Module prior to 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive. This affects versions prior to 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (mac...
Eset Nod32 Antivirus
Eset Internet Security
Eset Smart Security
Eset Nod32 Antivirus 4
Eset Mobile Security
Eset Smart Tv Security
Eset Cyber Security
NA
CVE-2024-0353
Local privilege escalation vulnerability potentially allowed an malicious user to misuse ESET’s file operations to delete files without having proper permission.
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started