Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
protection engine vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2023-24860
Microsoft Defender Denial of Service Vulnerability
Microsoft Malware Protection Engine
1 Article
7.5
CVSSv3
CVE-2023-27588
Hasura is an open-source product that provides users GraphQL or REST APIs. A path traversal vulnerability has been discovered within Hasura GraphQL Engine prior to versions 1.3.4, 2.55.1, 2.20.1, and 2.21.0-beta1. Projects running on Hasura Cloud were not vulnerable. Self-hosted ...
Hasura Graphql Engine
7.5
CVSSv3
CVE-2022-44654
Affected builds of Trend Micro Apex One and Apex One as a Service contain a monitor engine component that is complied without the /SAFESEH memory protection mechanism which helps to monitor for malicious payloads. The affected component's memory protection mechanism has been...
Trendmicro Apex One 2019
Trendmicro Apex One
7.5
CVSSv3
CVE-2022-38166
In F-Secure Endpoint Protection for Windows and macOS before channel with Capricorn database 2022-11-22_07, the aerdl.dll unpacker handler crashes. This can lead to a scanning engine crash, triggerable remotely by an attacker for denial of service.
F-secure Elements Endpoint Protection -
7.5
CVSSv3
CVE-2022-28884
A Denial-of-Service vulnerability exists in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine.
Withsecure Business Suite -
Withsecure Elements Endpoint Protection
F-secure Internet Gatekeeper -
F-secure Linux Security -
7.5
CVSSv3
CVE-2022-28882
A Denial-of-Service (DoS) vulnerability exists in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
F-secure Elements Endpoint Protection
F-secure Atlant
F-secure Internet Gatekeeper
F-secure Linux Security
F-secure Linux Security 64
F-secure Cloud Protection For Salesforce
F-secure Elements Collaboration Protection
7.5
CVSSv3
CVE-2022-28883
A Denial-of-Service (DoS) vulnerability exists in F-Secure & WithSecure products whereby the aerdl unpack function crashes. This can lead to a possible scanning engine crash. The exploit can be triggered remotely by an attacker.
F-secure Elements Endpoint Protection
F-secure Atlant
F-secure Internet Gatekeeper
F-secure Linux Security
F-secure Linux Security 64
F-secure Cloud Protection For Salesforce
F-secure Elements Collaboration Protection
7.5
CVSSv3
CVE-2022-28881
A Denial-of-Service (DoS) vulnerability exists in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
F-secure Elements Endpoint Detection And Response
F-secure Elements Endpoint Protection
F-secure Atlant
F-secure Internet Gatekeeper
F-secure Linux Security
F-secure Linux Security 64
F-secure Cloud Protection For Salesforce
F-secure Elements Collaboration Protection
7.5
CVSSv3
CVE-2022-30630
Uncontrolled recursion in Glob in io/fs before Go 1.17.12 and Go 1.18.4 allows an malicious user to cause a panic due to stack exhaustion via a path which contains a large number of path separators.
Golang Go
7.5
CVSSv3
CVE-2022-30631
Uncontrolled recursion in Reader.Read in compress/gzip before Go 1.17.12 and Go 1.18.4 allows an malicious user to cause a panic due to stack exhaustion via an archive containing a large number of concatenated 0-length compressed files.
Golang Go
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-33545
CVE-2024-35725
CVE-2024-32704
overflow
file upload
CVE-2024-0230
CVE-2024-32705
CVE-2024-23692
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »