Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
internet security vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-5043
Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to (1) cause a denial of service (crash) and possibly gain privileges via the NtCreateSection kernel SSDT hook...
Kaspersky Lab Kaspersky Internet Security 7.0.0.125
7.8
CVSSv3
CVE-2022-25949
The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-based buffer overflow.
Kingsoft Internet Security 9 Plus 2010.06.23.247
1 Github repository
NA
CVE-2011-1327
The Keystroke Encryption feature in Trend Micro Internet Security 2009 (aka Virus Buster 2009 and PC-cillin 2009) does not completely encrypt passwords, which allows local users to obtain sensitive information by leveraging a keylogger.
Trendmicro Trend Micro Internet Security 2009
NA
CVE-2010-4502
Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via crafted arguments to the 0x88000080 IOCTL, which triggers a buffer overflow.
Ca Internet Security Suite Plus 2010
1 EDB exploit
5.5
CVSSv3
CVE-2018-9151
A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allows local non-privileged users to crash the system via IOCTL 0x80030030.
Kingsoft Internet Security 9 Plus 2010.06.23.247
5.5
CVSSv3
CVE-2018-10098
In MicroWorld eScan Internet Security Suite (ISS) for Business 14.0.1400.2029, the driver econceal.sys allows a non-privileged user to send a 0x830020E0 IOCTL request to \\.\econceal to cause a denial of service (BSOD).
Escanav Escan Internet Security Suite 14.0.1400.2029
NA
CVE-2008-5427
Norton Antivirus in Norton Internet Security 15.5.0.23 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote malicious users to cause a de...
Symantec Norton Internet Security 2008 15.5.0.23
NA
CVE-2008-2511
Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Security Suite 2008 allows remote malicious users to create and overwrite arbitrary files via a .. (dot dot) in the argument to the Sa...
Ca Internet Security Suite Plus 2008
1 EDB exploit
7.8
CVSSv3
CVE-2023-3160
The vulnerability potentially allows an malicious user to misuse ESET’s file operations during the module update to delete or move files without having proper permissions.
Eset Internet Security -
Eset Endpoint Security -
Eset Endpoint Antivirus -
Eset Smart Security -
Eset Mail Security -
Eset Nod32 -
Eset Security -
Eset Server Security -
7.8
CVSSv3
CVE-2018-8090
Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT32.exe) - Version 10.0.1.38; Quick Heal Internet Security 64 bit 17.00 (QHIS64.exe), (QHISFT64.exe) - Version 10.0.0.37; Quick Heal...
Quickheal Antivirus Pro 17.00
Quickheal Internet Security 17.00
Quickheal Total Security 17.00
1 Github repository
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »