Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sophos sophos anti-virus vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-4680
Sophos Anti-Virus prior to 4.02, 4.5.x prior to 4.5.9, 4.6.x prior to 4.6.9, and 5.x prior to 5.1.4 allow remote malicious users to hide arbitrary files and data via crafted ARJ archives, which are not properly scanned.
Sophos Sophos Anti-virus 4.04
Sophos Sophos Anti-virus
5
CVSSv2
CVE-2005-3382
Multiple interpretation error in Sophos 3.91 with the 2.28.4 engine allows remote malicious users to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which causes the file to be treated a...
Sophos Sophos Anti-virus 3.91 Engine 2.28.4
5
CVSSv2
CVE-2005-1530
Sophos Anti-Virus 5.0.1, with "Scan inside archive files" enabled, allows remote malicious users to cause a denial of service (CPU consumption by infinite loop) via a Bzip2 archive with a large 'Extra field length' value.
Sophos Sophos Small Business Suite 1.0
Sophos Sophos Anti-virus 3.83
Sophos Sophos Anti-virus 3.91
Sophos Sophos Mailmonitor For Notes Domino
Sophos Sophos Mailmonitor 2.1
Sophos Sophos Anti-virus 3.80
Sophos Sophos Anti-virus 3.81
Sophos Sophos Anti-virus 3.86
Sophos Sophos Anti-virus 3.78
Sophos Sophos Anti-virus 3.82
Sophos Sophos Anti-virus 3.79
Sophos Sophos Puremessage Anti-virus 4.6
Sophos Sophos Anti-virus 3.78d
Sophos Sophos Anti-virus 3.90
Sophos Sophos Anti-virus 3.4.6
Sophos Sophos Anti-virus 5.0.1
Sophos Sophos Anti-virus 3.84
Sophos Sophos Mailmonitor 2.0
Sophos Sophos Anti-virus 3.85
5
CVSSv2
CVE-2004-2075
Sophos Anti-Virus 3.78 allows remote malicious users to cause a denial of service (infinite loop) via a MIME header that is not properly terminated.
5
CVSSv2
CVE-2004-2088
Sophos Anti-Virus 3.78 allows remote malicious users to bypass virus scanning by using a qmail generated Delivery Status Notification (DSN) where the original email is not included in the bounce message.
Sophos Sophos Anti-virus 3.78
Sophos Sophos Anti-virus 3.4.6
4.3
CVSSv2
CVE-2018-0202
clamscan in ClamAV prior to 0.99.4 contains a vulnerability that could allow an unauthenticated, remote malicious user to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms when handling Porta...
Clamav Clamav
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 17.10
Debian Debian Linux 7.0
1 Github repository
4.3
CVSSv2
CVE-2018-1000085
ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack appear to be exploitable via The victim must scan a crafted XAR...
Clamav Clamav 0.99.3
Debian Debian Linux 7.0
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 17.10
4.3
CVSSv2
CVE-2017-11423
The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote malicious users to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.
Libmspack Project Libmspack 0.5
4.3
CVSSv2
CVE-2014-2385
Multiple cross-site scripting (XSS) vulnerabilities in the web UI in Sophos Anti-Virus for Linux prior to 9.6.1 allow local users to inject arbitrary web script or HTML via the (1) newListList:ExcludeFileOnExpression, (2) newListList:ExcludeFilesystems, or (3) newListList:Exclude...
Sophos Anti-virus
4.3
CVSSv2
CVE-2012-1443
The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft ...
Bitdefender Bitdefender 7.2
Ahnlab V3 Internet Security 2011.01.18.00
Alwil Avast Antivirus 4.8.1351.0
Norman Norman Antivirus & Antispyware 6.06.12
Clamav Clamav 0.96.4
Rising-global Rising Antivirus 22.83.00.03
Anti-virus Vba32 3.12.14.2
Eset Nod32 Antivirus 5795
Trendmicro Housecall 9.120.0.1004
Avira Antivir 7.11.1.163
Symantec Endpoint Protection 11.0
Trendmicro Trend Micro Antivirus 9.120.0.1004
F-secure F-secure Anti-virus 9.0.16160.0
F-prot F-prot Antivirus 4.6.2.117
Sophos Sophos Anti-virus 4.61.0
Alwil Avast Antivirus 5.0.677.0
Mcafee Gateway 2010.1c
Kaspersky Kaspersky Anti-virus 7.0.0.125
Cat Quick Heal 11.00
Avg Avg Anti-virus 10.0.0.1190
Gdata-software G Data Antivirus 21
Fortinet Fortinet Antivirus 4.2.254.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »