Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.8
CVE-2024-1619
Kaspersky has fixed a security issue in the Kaspersky Security 8.0 for Linux Mail Server. The issue was that an attacker could potentially force an a…
Security
after 8.0.3.30
HIGH 7.8
CVE-2022-27535
Kaspersky VPN Secure Connection for Windows version up to 21.5 was vulnerable to arbitrary file deletion via abuse of its 'Delete All Service Data An…
Vpn Secure Connection
21.6+
CRITICAL 9.8
CVE-2022-27534
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data par…
Anti Virus
12.03.2022+
MEDIUM 5.5
CVE-2021-27223
A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security. …
Anti Virus
2021-06+
HIGH 7.8
CVE-2021-35052
A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.
Password Manager
after 9.0.1
HIGH 7.5
CVE-2021-35053
Possible system denial of service in case of arbitrary changing Firefox browser parameters. An attacker could change specific Firefox browser paramet…
Endpoint Security
after 11.6.0
HIGH 7.5
CVE-2020-27020
Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict g…
Password Manager
9.2 / 9.2.14.31+
MEDIUM 5.5
CVE-2021-26718
KIS for macOS in some use cases was vulnerable to AV bypass that potentially allowed an attacker to disable anti-virus protection.
Internet Security
21.1+
MEDIUM 6.8
CVE-2020-26200
A component of Kaspersky custom boot loader allowed loading of untrusted UEFI modules due to insufficient check of their authenticity. This component…
Endpoint Security
18.0.11.3+
CRITICAL 9.8
CVE-2020-36199
TinyCheck before commits 9fd360d and ea53de8 was vulnerable to command injection due to insufficient checks of input parameters in several places.
Tinycheck
2020-12-18+
MEDIUM 6.5
CVE-2020-36200
TinyCheck before commits 9fd360d and ea53de8 allowed an authenticated attacker to send an HTTP GET request to the crafted URLs.
Tinycheck
2020-12-18+
CRITICAL 9.8
CVE-2020-35929
In TinyCheck before commits 9fd360d and ea53de8, the installation script of the tool contained hard-coded credentials to the backend part of the tool…
Tinycheck
2020-12-18+
HIGH 7.8
CVE-2020-28950
The installer of Kaspersky Anti-Ransomware Tool (KART) prior to KART 4.0 Patch C was vulnerable to a DLL hijacking attack that allowed an attacker to…
Anti Ransomware Tool
4.0+
HIGH 7.8
CVE-2020-25045
Installers of Kaspersky Security Center and Kaspersky Security Center Web Console prior to 12 & prior to 12 Patch A were vulnerable to a DLL hijackin…
Security Center
12+
HIGH 7.1
CVE-2020-25043
The installer of Kaspersky VPN Secure Connection prior to 5.0 was vulnerable to arbitrary file deletion that could allow an attacker to delete any fi…
Vpn Secure Connection
5.0+
HIGH 7.1
CVE-2020-25044
Kaspersky Virus Removal Tool (KVRT) prior to 15.0.23.0 was vulnerable to arbitrary file corruption that could provide an attacker with the opportunit…
Virus Removal Tool
15.0.23.0+
MEDIUM 6.7
CVE-2019-15689
Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug t…
Kaspersky Internet Security
No fix yet
MEDIUM 6.5
CVE-2019-15687
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Se…
Anti Virus
after 2020
MEDIUM 6.1
CVE-2019-15688
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Se…
Anti Virus
after 2020
HIGH 8.8
CVE-2019-8285
Kaspersky Lab Antivirus Engine version before 04.apr.2019 has a heap-based buffer overflow vulnerability that potentially allow arbitrary code execut…
Antivirus Engine
2019.04.04+
HIGH 7.8
CVE-2018-6306
Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager versions before 8.0.6.538.
Password Manager
8.0.6.538+
CRITICAL 9.8
CVE-2018-6289EPSS 7%
Configuration file injection leading to Code Execution as Root in Kaspersky Secure Mail Gateway version 1.1.
Secure Mail Gateway
No fix yet
HIGH 8.8
CVE-2018-6288
Cross-site Request Forgery leading to Administrative account takeover in Kaspersky Secure Mail Gateway version 1.1.
Secure Mail Gateway
No fix yet
HIGH 7.8
CVE-2018-6290
Local Privilege Escalation in Kaspersky Secure Mail Gateway version 1.1.
Secure Mail Gateway
No fix yet
MEDIUM 6.1
CVE-2018-6291
WebConsole Cross-Site Scripting in Kaspersky Secure Mail Gateway version 1.1.
Secure Mail Gateway
No fix yet
HIGH 7.8
CVE-2017-12823
Kernel pool memory corruption in one of drivers in Kaspersky Embedded Systems Security version 1.2.0.300 leads to local privilege escalation.
Embedded Systems Security
Mitigation only
CRITICAL 9.8
CVE-2017-12816
In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malwa…
Internet Security
Mitigation only
HIGH 7.5
CVE-2017-12817
In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted.
Internet Security
Mitigation only
CRITICAL 9.8
CVE-2017-9811EPSS 10%
The kluser is able to interact with the kav4fs-control binary in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 …
Anti Virus For Linux Server
after 8.0.3.297
HIGH 8.8
CVE-2017-9810
There are no Anti-CSRF tokens in any forms on the web interface in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix …
Anti Virus For Linux Server
after 8.0.3.297