Page 4 of 59 results (0.006 seconds)

CVSS: 6.5EPSS: 0%CPEs: 9EXPL: 0

08 Oct 2021 — A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVRDL unpacking module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine. Se ha detectado una vulnerabilidad de Denegación de Servicio (DoS) en F-Secure Atlant, por la que el componente del módulo de desempaquetado AVRDL usado en determinados productos ... • https://www.f-secure.com/en/business/programs/vulnerability-reward-program/hall-of-fame •

CVSS: 6.5EPSS: 0%CPEs: 9EXPL: 0

08 Oct 2021 — A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVPACK module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine. Se ha detectado una vulnerabilidad de Denegación de Servicio (DoS) en F-Secure Atlant por la que el componente del módulo AVPACK usado en determinados productos de F-Secure puede bloquears... • https://www.f-secure.com/en/business/programs/vulnerability-reward-program/hall-of-fame •

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

07 Sep 2021 — A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-of-service (infinite loop and freezes AV engine scanner). The vulnerability can be exploit remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine. Se ha detectado una vulnerabilidad que afecta al motor de F-Secure Antivirus por la que el escaneo de un archivo WIM puede conllevar a una denegación de servicio (bucle infinito y congelación del e... • https://www.f-secure.com/en/business/programs/vulnerability-reward-program/hall-of-fame • CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVSS: 6.5EPSS: 0%CPEs: 5EXPL: 0

23 Aug 2021 — A Denial-of-Service (DoS) vulnerability was discovered in all versions of F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine. Se ha detectado una vulnerabilidad de Denegación de Servicio (DoS) en todas las versiones de F-Secure Atlant por la que el componente SAVAPI usado en determinados productos de F-Sec... • https://www.f-secure.com/en/business/programs/vulnerability-reward-program/hall-of-fame •

CVSS: 5.5EPSS: 0%CPEs: 7EXPL: 0

05 Aug 2021 — A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine. Se ha detectado una vulnerabilidad de denegación de servicio (DoS) en F-Secure Atlant por la que el componente SAVAPI usado en determinados productos de F-Secure puede bloquearse mientras se escane... • https://www.f-secure.com/en/business/programs/vulnerability-reward-program/hall-of-fame •

CVSS: 7.8EPSS: 0%CPEs: 26EXPL: 0

25 Feb 2021 — Microsoft Defender Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios de Microsoft Defender • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-24092 • CWE-269: Improper Privilege Management •

CVSS: 7.8EPSS: 63%CPEs: 24EXPL: 1

12 Jan 2021 — Microsoft Defender Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de Código Remota de Microsoft Defender Microsoft Defender contains an unspecified vulnerability that allows for remote code execution. • https://github.com/findcool/cve-2021-1647 • CWE-20: Improper Input Validation •

CVSS: 7.1EPSS: 0%CPEs: 25EXPL: 0

14 Jul 2020 — An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'. Se presenta una vulnerabilidad de elevación de privilegios cuando el archivo MpSigStub.exe para Defender permite una eliminación de archivos en ubicaciones arbitrarias. Para explotar la vulnerabilidad, un atacante primero debe iniciar ses... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1461 •

CVSS: 7.8EPSS: 0%CPEs: 25EXPL: 0

09 Jun 2020 — An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1170. Se presenta una vulnerabilidad de elevación de privilegios en Windows Defender que conlleva a una eliminación arbitraria de archivos en el sistema. Para explotar la vulnerabilidad, un atacante primer... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1163 •

CVSS: 7.8EPSS: 0%CPEs: 25EXPL: 2

09 Jun 2020 — An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1163. Se presenta una vulnerabilidad de elevación de privilegios en Windows Defender que conlleva a una eliminación arbitraria de archivos en el sistema. Para explotar la vulnerabilidad, un atacante primer... • https://packetstorm.news/files/id/160919 • CWE-732: Incorrect Permission Assignment for Critical Resource •