Vulnerabilities
Vulnerable Software
Kaspersky:  Security Vulnerabilities
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component did not adequately inform the user about the threat of redirecting to an untrusted site. Bypass.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-11-26
Kaspersky Protection extension for web browser Google Chrome prior to 30.112.62.0 was vulnerable to unauthorized access to its features remotely that could lead to removing other installed extensions.
CVSS Score
4.3
EPSS Score
0.001
Published
2019-11-25
Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 2019 could potentially disclose unique Product ID by forcing victim to visit a specially crafted webpage (for example, via clicking phishing link). Vulnerability has CVSS v3.0 base score 2.6
CVSS Score
4.3
EPSS Score
0.004
Published
2019-07-18
Kaspersky Lab Antivirus Engine version before 04.apr.2019 has a heap-based buffer overflow vulnerability that potentially allow arbitrary code execution
CVSS Score
8.8
EPSS Score
0.026
Published
2019-05-08
Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager versions before 8.0.6.538.
CVSS Score
7.8
EPSS Score
0.004
Published
2018-04-19
Cross-site Request Forgery leading to Administrative account takeover in Kaspersky Secure Mail Gateway version 1.1.
CVSS Score
8.8
EPSS Score
0.002
Published
2018-02-06
Configuration file injection leading to Code Execution as Root in Kaspersky Secure Mail Gateway version 1.1.
CVSS Score
9.8
EPSS Score
0.024
Published
2018-02-06
Local Privilege Escalation in Kaspersky Secure Mail Gateway version 1.1.
CVSS Score
7.8
EPSS Score
0.0
Published
2018-02-06
WebConsole Cross-Site Scripting in Kaspersky Secure Mail Gateway version 1.1.
CVSS Score
6.1
EPSS Score
0.003
Published
2018-02-06
Kernel pool memory corruption in one of drivers in Kaspersky Embedded Systems Security version 1.2.0.300 leads to local privilege escalation.
CVSS Score
7.8
EPSS Score
0.002
Published
2017-12-08


Contact Us

Shodan ® - All rights reserved