// For flags

CVE-2012-1452

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The CAB file parser in Emsisoft Anti-Malware 5.1.0.1, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Quick Heal (aka Cat QuickHeal) 11.00 allows remote attackers to bypass malware detection via a CAB file with a modified reserved1 field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CAB parser implementations.

El analizador de archivos CAB en el Emsisoft Anti-Malware 5.1.0.1, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, y Quick Heal (también conocido como Cat QuickHeal) 11.00 permite a atacantes remotos evitar la detección de malware a través de un archivo CAB con una modificación del campo reserved1. NOTA: esto más adelante se puede dividir en varios CVEs si la información adicional que se publica muestra que el error se produjo de forma independiente en diferentes implementaciones del analizador CAB.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-02-29 CVE Reserved
  • 2012-03-21 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-11-09 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cat
Search vendor "Cat"
Quick Heal
Search vendor "Cat" for product "Quick Heal"
11.00
Search vendor "Cat" for product "Quick Heal" and version "11.00"
-
Affected
Emsisoft
Search vendor "Emsisoft"
Anti-malware
Search vendor "Emsisoft" for product "Anti-malware"
5.1.0.1
Search vendor "Emsisoft" for product "Anti-malware" and version "5.1.0.1"
-
Affected
Ikarus
Search vendor "Ikarus"
Ikarus Virus Utilities T3 Command Line Scanner
Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner"
1.1.97.0
Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner" and version "1.1.97.0"
-
Affected