Page 5 of 47 results (0.006 seconds)

CVSS: 7.5EPSS: 14%CPEs: 48EXPL: 2

19 Nov 2004 — Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. • https://www.exploit-db.com/exploits/629 •

CVSS: 7.5EPSS: 13%CPEs: 48EXPL: 2

19 Nov 2004 — Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. • https://www.exploit-db.com/exploits/629 •

CVSS: 7.5EPSS: 13%CPEs: 48EXPL: 2

19 Nov 2004 — RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. • https://www.exploit-db.com/exploits/629 •

CVSS: 7.7EPSS: 13%CPEs: 48EXPL: 2

19 Nov 2004 — Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. • https://www.exploit-db.com/exploits/629 •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1

31 Dec 2003 — Kaspersky Antivirus (KAV) 4.0.9.0 does not detect viruses in files with MS-DOS device names in their filenames, which allows local users to bypass virus protection, as demonstrated using aux.vbs and aux.com. • http://archives.neohapsis.com/archives/bugtraq/2003-02/0130.html • CWE-20: Improper Input Validation •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1

31 Dec 2003 — Kaspersky Antivirus (KAV) 4.0.9.0 allows local users to cause a denial of service (CPU consumption or crash) and prevent malicious code from being detected via a file with a long pathname. • http://archives.neohapsis.com/archives/bugtraq/2003-02/0130.html • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: 2%CPEs: 1EXPL: 0

12 Oct 2001 — Format string vulnerability in avpkeeper in Kaspersky KAV 3.5.135.2 for Sendmail allows remote attackers to cause a denial of service or possibly execute arbitrary code via a malformed mail message. Vulnerabilidad de formato de cadena en avpkeeper en Kaspersky KAV 3.5.135.2 para Sendmail permite a atacantes remotos provocar una denegación de servicio o posiblemente ejecutar código arbitrario a través de un mensaje de correo electrónico mal formado. • http://archives.neohapsis.com/archives/bugtraq/2001-06/0274.html •