Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
antivirus vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2869
Unspecified vulnerability in the CHM unpacker in avast! prior to 4.7.844 has unknown impact and remote attack vectors.
Alwil Avast Antivirus 4.6.665
Alwil Avast Antivirus 4.6.652
Alwil Avast Antivirus 4.6.655
Alwil Avast Antivirus 4.7.827
Alwil Avast Antivirus 4.0
Alwil Avast Antivirus 4.6.691
Alwil Avast Antivirus 4.6
Alwil Avast Antivirus 4.6.603
8.6
CVSSv3
CVE-2022-26122
An insufficient verification of data authenticity vulnerability [CWE-345] in FortiClient, FortiMail and FortiOS AV engines version 6.2.168 and below and version 6.4.274 and below may allow an malicious user to bypass the AV engine via manipulating MIME attachment with junk and pa...
Fortinet Fortimail 4.1.0
Fortinet Fortimail
Fortinet Fortios
Fortinet Fortios 7.2.0
Fortinet Antivirus Engine 6.33
Fortinet Antivirus Engine 6.253
Fortinet Antivirus Engine 6.252
Fortinet Antivirus Engine 6.243
Fortinet Antivirus Engine 6.157
Fortinet Antivirus Engine 6.156
Fortinet Antivirus Engine 6.145
Fortinet Antivirus Engine 6.144
Fortinet Antivirus Engine 6.142
Fortinet Antivirus Engine 6.137
Fortinet Antivirus Engine 4.4.54
Fortinet Antivirus Engine 2.0.60
Fortinet Antivirus Engine 2.0.49
Fortinet Antivirus Engine 0.4.23
NA
CVE-2007-2917
Multiple buffer overflows in a certain ActiveX control in odapi.dll in Authentium Command Antivirus prior to 4.93.8 allow remote malicious users to execute arbitrary code via unspecified vectors.
Authentium Command Antivirus 4.93.7
Authentium Command Antivirus 4.93.1
Authentium Command Antivirus 4.93.2
Authentium Command Antivirus 4.93.3
Authentium Command Antivirus 4.93.4
Authentium Command Antivirus 4.93.5
Authentium Command Antivirus 4.93.6
3.3
CVSSv3
CVE-2021-25227
Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application. Please note: an attacker must first obtain the ability to execute low-privileged code on the target...
Trendmicro Antivirus 9.0
Trendmicro Antivirus 10.0
Trendmicro Antivirus 10.5
Trendmicro Antivirus 11.0
NA
CVE-2009-1428
Multiple cross-site scripting (XSS) vulnerabilities in ccLgView.exe in the Symantec Log Viewer, as used in Symantec AntiVirus (SAV) prior to 10.1 MR8, Symantec Endpoint Protection (SEP) 11.0 prior to 11.0 MR1, Norton 360 1.0, and Norton Internet Security 2005 through 2008, allow ...
Symantec Norton Internet Security 2005
Symantec Norton Internet Security 2008
Symantec Antivirus
Symantec Antivirus 10.0.2.1
Symantec Antivirus 10.0.2.2
Symantec Endpoint Protection 11.0
Symantec Norton Internet Security 2005 Contains Nav 11.0.0
Symantec Norton Internet Security 2006
Symantec Antivirus 10.0.6
Symantec Antivirus 10.0.8
Symantec Antivirus 10.0.7
Symantec Antivirus 10.0.4
Symantec Antivirus 10.0.5
Symantec Norton 360 1.0
Symantec Norton Internet Security 2007
Symantec Antivirus 10.0.1.1
Symantec Antivirus 10.0.1
Symantec Antivirus 10.0
Symantec Antivirus 10.0.9
Symantec Antivirus 10.0.2
Symantec Antivirus 10.0.3
NA
CVE-2007-0829
avast! Server Edition prior to 4.7.726 does not demand a password in a certain intended context, even when a password has been set, which allows local users to bypass authentication requirements.
Alwil Avast Antivirus 4.7.676
Alwil Avast Antivirus 4.6.566
Alwil Avast Antivirus 4.7.660
Alwil Avast Antivirus 4.6.460
Alwil Avast Antivirus 4.6.489
NA
CVE-2012-4953
The decomposer engine in Symantec Endpoint Protection (SEP) 11.0, Symantec Endpoint Protection Small Business Edition 12.0, Symantec AntiVirus Corporate Edition (SAVCE) 10.x, and Symantec Scan Engine (SSE) prior to 5.2.8 does not properly perform bounds checks of the contents of ...
Symantec Antivirus 10.1.6
Symantec Antivirus 10.1.5
Symantec Endpoint Protection 12.0
Symantec Antivirus 10.1.9
Symantec Scan Engine
Symantec Antivirus 10.1.8
Symantec Antivirus 10.1.7
Symantec Endpoint Protection 11.0
Symantec Antivirus 10.1.4
Symantec Antivirus 10.1.0
NA
CVE-2013-3580
The TrustGo Antivirus & Mobile Security application prior to 1.3.6 for Android allows malicious users to cause a denial of service (application crash) via a crafted application that sends an intent to com.trustgo.mobile.security.USSDScannerActivity with zero arguments.
Trustgo Antivirus \\& Mobile Security 1.2.8
Trustgo Antivirus \\& Mobile Security 1.2.9
Trustgo Antivirus \\& Mobile Security 1.3.0
Trustgo Antivirus \\& Mobile Security 1.3.1
Trustgo Antivirus \\& Mobile Security 1.3.2
Trustgo Antivirus \\& Mobile Security 1.3.3
Trustgo Antivirus \\& Mobile Security 1.3.5
Trustgo Antivirus \\& Mobile Security 1.2.7
Trustgo Antivirus \\& Mobile Security 1.3.4
NA
CVE-2008-1625
aavmker4.sys in avast! Home and Professional 4.7 for Windows does not properly validate input to IOCTL 0xb2d60030, which allows local users to gain privileges via certain IOCTL requests.
Avast Avast Antivirus Home 4.7.1043
Avast Avast Antivirus Home 4.7.1098
Avast Avast Antivirus Home 4.7.827
Avast Avast Antivirus Home 4.7.844
Avast Avast Antivirus Home 4.7.869
Avast Avast Antivirus Professional 4.7.844
Avast Avast Antivirus Professional 4.7.1043
Avast Avast Antivirus Professional 4.7.1098
Avast Avast Antivirus Professional 4.7.827
1 EDB exploit
NA
CVE-2004-1149
Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
Broadcom Etrust Ez Antivirus 7.0
Broadcom Etrust Ez Antivirus 7.0.1
Broadcom Etrust Ez Antivirus 7.0.4
Broadcom Etrust Ez Antivirus 7.0.2.1
Broadcom Etrust Ez Antivirus 7.0.3
Broadcom Etrust Ez Antivirus 7.0.1.1
Broadcom Etrust Ez Antivirus 7.0.1.2
Broadcom Etrust Ez Antivirus 7.0.1.3
Broadcom Etrust Ez Antivirus 7.0.1.4
Broadcom Etrust Ez Antivirus 7.0.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »