9.8
CVSSv3

CVE-2019-6440

Published: 16/01/2019 Updated: 25/01/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Zemana AntiMalware prior to 3.0.658 Beta mishandles update logic.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zemana antimalware 3.0.492

zemana antimalware 3.0.495

zemana antimalware 3.0.500

zemana antimalware 2.74.1.145

zemana antimalware 2.73.2.2

zemana antimalware 2.73.2.36

zemana antimalware 2.73.2.38

zemana antimalware 2.72.1.345

zemana antimalware 2.72.1.176

zemana antimalware 2.72.2.176

zemana antimalware 2.72.2.101

zemana antimalware 2.71.1.139

zemana antimalware 2.70.1.341

zemana antimalware 2.70.1.352

zemana antimalware 2.70.1.415

zemana antimalware 2.70.2.312

zemana antimalware 2.60.1.63

zemana antimalware 2.70.1.25

zemana antimalware 2.70.1.118

zemana antimalware 2.60.1.1

zemana antimalware 2.50.2.76

zemana antimalware 2.50.1.34

zemana antimalware 2.50.1.38

zemana antimalware 2.50.1.52

zemana antimalware 2.50.1.67

zemana antimalware 2.21.1.308

zemana antimalware 2.21.1.321

zemana antimalware 2.21.2.321

zemana antimalware 2.21.2.278

zemana antimalware 2.21.2.29

zemana antimalware 2.21.1.16

zemana antimalware 2.21.1.29

zemana antimalware 2.21.1.81

zemana antimalware 2.20.1.905

zemana antimalware 2.20.1.911

zemana antimalware 2.20.2.572

zemana antimalware 2.20.2.613

zemana antimalware 2.20.1.73

zemana antimalware 2.20.2.8

zemana antimalware 2.19.1.906

zemana antimalware 2.20.1.8

zemana antimalware 2.19.1.783

zemana antimalware 2.19.1.797

zemana antimalware 2.19.2.737

zemana antimalware 2.19.1.659

zemana antimalware 2.18.1.462

zemana antimalware 2.18.1.438

zemana antimalware 2.18.2.263

zemana antimalware 2.18.1.90

zemana antimalware 2.17.1.82

zemana antimalware 2.17.1.100

zemana antimalware 2.17.1.116

zemana antimalware 2.17.1.33

zemana antimalware 2.17.2.33

zemana antimalware 2.16.1.67

zemana antimalware 2.16.1.94

zemana antimalware 2.16.1.716

zemana antimalware 2.16.1.198

zemana antimalware 2.11.1.514

zemana antimalware 2.11.2.514

zemana antimalware 2.11.2.366

zemana antimalware 2.11.2.62

zemana antimalware 2.11.1.9

zemana antimalware 2.11.1.62

zemana antimalware 2.11.1.366

zemana antimalware 2.5.2.256

zemana antimalware 3.0.617

zemana antimalware 3.0.633

zemana antimalware 3.0.640

zemana antimalware 2.74.1.150

zemana antimalware 2.73.1.36

zemana antimalware 2.73.1.38

zemana antimalware 2.72.2.324

zemana antimalware 2.72.2.327

zemana antimalware 3.0.597

zemana antimalware 3.0.616

zemana antimalware 2.74.2.150

zemana antimalware 2.74.1.4

zemana antimalware 2.74.1.76

zemana antimalware 2.74.2.49

zemana antimalware 2.72.1.388

zemana antimalware 2.72.2.388

zemana antimalware 2.72.1.327

zemana antimalware 2.70.2.591

zemana antimalware 2.70.1.591

zemana antimalware 2.70.2.341

zemana antimalware 2.70.2.439

zemana antimalware 2.70.2.262

zemana antimalware 2.70.1.132

zemana antimalware 2.70.1.262

zemana antimalware 2.70.2.25

zemana antimalware 2.60.2.1

zemana antimalware 2.50.2.133

zemana antimalware 2.50.1.80

zemana antimalware 2.50.2.72

zemana antimalware 2.30.1.69

zemana antimalware 2.30.2.57

zemana antimalware 2.30.1.35

zemana antimalware 2.21.2.465

zemana antimalware 2.21.1278

zemana antimalware 2.21.2.180

zemana antimalware 2.21.1.94

zemana antimalware 2.21.2.87

zemana antimalware 2.21.2.15

zemana antimalware 2.21.1.13

zemana antimalware 2.20.1.687

zemana antimalware 2.20.1.750

zemana antimalware 2.20.1.539

zemana antimalware 2.20.1.600

zemana antimalware 2.20.1.112

zemana antimalware 2.20.1.90

zemana antimalware 2.19.1.887

zemana antimalware 2.19.1.904

zemana antimalware 2.19.1.808

zemana antimalware 2.19.2.797

zemana antimalware 2.19.1.703

zemana antimalware 2.19.1.737

zemana antimalware 2.18.1.466

zemana antimalware 2.18.2.438

zemana antimalware 2.18.1.135

zemana antimalware 2.18.1.254

zemana antimalware 2.17.1.916

zemana antimalware 2.18.1.19

zemana antimalware 2.16.2.938

zemana antimalware 2.16.1.938

zemana antimalware 2.16.2.198

zemana antimalware 2.15.1.840

zemana antimalware 2.15.2.721

zemana antimalware 2.15.1.600

zemana antimalware 2.15.1.721

zemana antimalware 2.15.1.157

zemana antimalware 2.14.2.667

zemana antimalware 2.6.1.430

zemana antimalware 2.8.1.971

zemana antimalware 2.9.1.944

zemana antimalware 2.10.1.18

zemana antimalware 2.10.1.895

zemana antimalware 2.7.2.440

zemana antimalware 2.1.1.543

zemana antimalware 2.5.1.257

zemana antimalware 3.0.590

zemana antimalware 3.0.610

zemana antimalware 2.74.2.76

zemana antimalware 2.74.1.49

zemana antimalware 2.72.1.380

zemana antimalware 2.73.1.2

zemana antimalware 2.72.2.345

zemana antimalware 2.72.1.324

zemana antimalware 2.72.1.101

zemana antimalware 2.70.1.576

zemana antimalware 2.70.2.352

zemana antimalware 2.70.1.312

zemana antimalware 2.70.2.244

zemana antimalware 2.70.1.127

zemana antimalware 2.70.1.244

zemana antimalware 2.70.2.118

zemana antimalware 2.50.2.92

zemana antimalware 2.50.1.92

zemana antimalware 2.50.1.76

zemana antimalware 2.50.2.67

zemana antimalware 2.50.1.72

zemana antimalware 2.30.1.75

zemana antimalware 2.30.1.37

zemana antimalware 2.21.1.465

zemana antimalware 2.21.1.261

zemana antimalware 2.21.2.247

zemana antimalware 2.21.1.180

zemana antimalware 2.21.2.81

zemana antimalware 2.21.1.6

zemana antimalware 2.21.1.15

zemana antimalware 2.20.2.905

zemana antimalware 2.20.1.729

zemana antimalware 2.20.1.776

zemana antimalware 2.20.1.425

zemana antimalware 2.20.1.562

zemana antimalware 2.20.2.100

zemana antimalware 2.20.1.100

zemana antimalware 2.19.2.904

zemana antimalware 2.19.1.892

zemana antimalware 2.19.1.852

zemana antimalware 2.19.1.844

zemana antimalware 2.19.2.808

zemana antimalware 2.19.1.713

zemana antimalware 2.19.2.638

zemana antimalware 2.18.1.519

zemana antimalware 2.18.1.372

zemana antimalware 2.18.1.101

zemana antimalware 2.18.1.231

zemana antimalware 2.17.1.985

zemana antimalware 2.17.2.116

zemana antimalware 2.16.1.886

zemana antimalware 2.16.2.633

zemana antimalware 2.16.1.292

zemana antimalware 2.15.1.836

zemana antimalware 2.15.1.544

zemana antimalware 2.15.1.677

zemana antimalware 2.15.1.206

zemana antimalware 2.14.1.667

zemana antimalware 2.5.1.329

zemana antimalware 2.6.1.436

zemana antimalware 2.10.1.17

zemana antimalware 2.10.1.774

zemana antimalware 2.1.1.353

zemana antimalware 2.1.1.621

zemana antimalware 2.4.1.100

zemana antimalware 2.70.2.576

zemana antimalware 2.70.2.442

zemana antimalware 2.70.1.442

zemana antimalware 2.70.1.439

zemana antimalware 2.70.1.133

zemana antimalware 2.70.1.177

zemana antimalware 2.70.1.201

zemana antimalware 2.70.1.228

zemana antimalware 2.70.1.229

zemana antimalware 2.50.1.133

zemana antimalware 2.50.1.83

zemana antimalware 2.50.2.83

zemana antimalware 2.50.2.80

zemana antimalware 2.30.2.37

zemana antimalware 2.21.1.527

zemana antimalware 2.30.1.19

zemana antimalware 2.30.1.20

zemana antimalware 2.21.1.247

zemana antimalware 2.21.1.139

zemana antimalware 2.21.2.139

zemana antimalware 2.21.2.94

zemana antimalware 2.21.1.18

zemana antimalware 2.20.2.985

zemana antimalware 2.20.1.985

zemana antimalware 2.20.2.911

zemana antimalware 2.20.1.613

zemana antimalware 2.20.1.140

zemana antimalware 2.20.2.140

zemana antimalware 2.20.2.112

zemana antimalware 2.19.2.852

zemana antimalware 2.19.2.842

zemana antimalware 2.19.2.844

zemana antimalware 2.19.1.842

zemana antimalware 2.19.1.502

zemana antimalware 2.19.1.638

zemana antimalware 2.18.2.634

zemana antimalware 2.18.2.519

zemana antimalware 2.18.1.263

zemana antimalware 2.18.2.19

zemana antimalware 2.17.1.839

zemana antimalware 2.17.1.906

zemana antimalware 2.16.1.633

zemana antimalware 2.16.1.558

zemana antimalware 2.16.2.558

zemana antimalware 2.16.2.292

zemana antimalware 2.15.2.229

zemana antimalware 2.15.1.229

zemana antimalware 2.15.2.206

zemana antimalware 2.14.1.982

zemana antimalware 2.9.1.402

zemana antimalware 2.9.1.440

zemana antimalware 2.9.1.467

zemana antimalware 2.9.1.918

zemana antimalware 2.1.1.929

zemana antimalware 2.2.1.105

zemana antimalware 2.2.1.234

zemana antimalware 2.2.1.460

Github Repositories

CVE-2019-6440. Zemana RCE and privilege escalation.

CVE-2019-6440: Tested products: Zemana antimalware v2742150 & Zemana antilogger v274204150 Fixed since v2742664 About vulnerability: This vulnerability allowed attackers to get SYSTEM privileges on target machines without user interaction Requirements: 1 Attacker must be able to intercept and change content of the POST request to the URL "POST /api/c