Vulnerability index

Browse CVEs

34 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Internet Security HIGH 7.0
CVE-2026-27750

Avira Internet Security contains a time-of-check time-of-use (TOCTOU) vulnerability in the Optimizer component. A privileged service running as SYSTE…

Fix: 1.1.114.3113+
Fix from $1,950 2026-03-05
Internet Security HIGH 7.8
CVE-2026-27749

Avira Internet Security contains a deserialization of untrusted data vulnerability in the System Speedup component. The Avira.SystemSpeedup.RealTimeO…

Fix: 1.1.114.3113+
Fix from $1,950 2026-03-05
Internet Security HIGH 7.1
CVE-2026-27748

Avira Internet Security contains an improper link resolution vulnerability in the Software Updater component. During the update process, a privileged…

Fix: 1.1.114.3113+
Fix from $1,950 2026-03-05
Avira Prime HIGH 7.8
CVE-2023-51636

Avira Prime Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected ins…

Fix: 6.27.19+
Fix from $1,950 2024-05-22
Phantom Vpn HIGH 7.3
CVE-2023-36673

An issue was discovered in Avira Phantom VPN through 2.23.1 for macOS. The VPN client insecurely configures the operating system such that all IP tra…

Fix: after 2.23.1
Fix from $1,950 2023-08-09
Antivirus MEDIUM 5.5
CVE-2023-1900

A vulnerability within the Avira network protection feature allowed an attacker with local execution rights to cause an overflow. This could corrupt …

Fix: 1.0.2303.633+
Fix from $1,600 2023-04-19
Avira Security HIGH 7.8
CVE-2022-4294

Norton, Avira, Avast and AVG Antivirus for Windows may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an at…

Fix: 1.1.78 / 22.10+
Fix from $1,950 2023-01-10
Avira Security HIGH 8.8
CVE-2022-3368

A vulnerability within the Software Updater functionality of Avira Security for Windows allowed an attacker with write access to the filesystem, to e…

Fix: after 1.1.71.30554
Fix from $1,950 2022-10-17
Password Manager MEDIUM 6.5
CVE-2022-28795

A vulnerability within the Avira Password Manager Browser Extensions provided a potential loophole where, if a user visited a page crafted by an atta…

Mitigation only
Fix from $1,600 2022-04-12
Free Antivirus MEDIUM 5.5
CVE-2020-12680

Avira Free Antivirus through 15.0.2005.1866 allows local users to discover user credentials. The functions of the executable file Avira.PWM.NativeMes…

Fix: after 15.0.2005.1866
Fix from $1,600 2020-05-08
Software Updater HIGH 7.8
CVE-2020-12463

An elevation of privilege vulnerability exists in Avira Software Updater before 2.0.6.27476 due to improperly handling file hard links. This allows l…

Fix: 2.0.6.27476+
Fix from $1,950 2020-05-05
Antivirus HIGH 7.8
CVE-2020-12254

Avira Antivirus before 5.0.2003.1821 on Windows allows privilege escalation or a denial of service via abuse of a symlink.

Fix: 5.0.2003.1821+
Fix from $1,950 2020-04-26
Free Antivirus CRITICAL 9.8
CVE-2020-8961

An issue was discovered in Avira Free-Antivirus before 15.0.2004.1825. The Self-Protection feature does not prohibit a write operation from an extern…

Fix: 15.0.2004.1825+
Fix from $2,300 2020-04-09
Anti Malware Sdk MEDIUM 5.5
CVE-2020-9320

Avira AV Engine before 8.3.54.138 allows virus-detection bypass via a crafted ISO archive. This affects versions before 8.3.54.138 of Antivirus for E…

Fix: 8.3.54.138+
Fix from $1,600 2020-02-20
Antivir Mailgate MEDIUM 5.5
CVE-2013-4602

A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engi…

Fix: 8.2.12.58+
Fix from $1,600 2020-02-12
Free Antivirus HIGH 8.8
CVE-2019-18568

Avira Free Antivirus 15.0.1907.1514 is prone to a local privilege escalation through the execution of kernel code from a restricted user.

Mitigation only
Fix from $1,950 2019-12-31
Software Updater MEDIUM 6.7
CVE-2019-17449

Avira Software Updater before 2.0.6.21094 allows a DLL side-loading attack. NOTE: The vendor thinks that this vulnerability is invalid because exploi…

Fix: 2.0.6.21094+
Fix from $1,600 2019-10-10
Free Security Suite HIGH 7.8
CVE-2019-11396

An issue was discovered in Avira Free Security Suite 10. The permissive access rights on the SoftwareUpdater folder (files / folders and configuratio…

Fix: after 2.0.6.13175
Fix from $1,950 2019-08-29
Antivirus HIGH 7.8
CVE-2016-10402EPSS 10%

Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative v…

Fix: after 8.3.36.59
Fix from $1,950 2017-07-27
Avira Mobile Security HIGH 7.5
CVE-2015-7732

The Avira Mobile Security app before 1.5.11 for iOS sends sensitive login information in cleartext.

Mitigation only
Fix from $1,950 2017-06-15
Free Security Suite MEDIUM 6.7
CVE-2017-6417

Code injection vulnerability in Avira Total Security Suite 15.0 (and earlier), Optimization Suite 15.0 (and earlier), Internet Security Suite 15.0 (a…

Fix: after 15.0
Fix from $1,600 2017-03-21
Management Console HIGH 10.0
CVE-2015-7303EPSS 35%

Use-after-free vulnerability in the Update Manager service in Avira Management Console allows remote attackers to execute arbitrary code via a large …

Mitigation only
Fix from $1,950 2015-09-21
Avira Secure Backup MEDIUM 5.4
CVE-2014-5576

The Avira Secure Backup (aka com.avira.avirabackup) application 1.2.3 for Android does not verify X.509 certificates from SSL servers, which allows m…

Mitigation only
Fix from $1,600 2014-09-09
Premium Security Suite MEDIUM 5.3
CVE-2010-5153

Race condition in Avira Premium Security Suite 10.0.0.536 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous…

Mitigation only
Fix from $1,600 2012-08-25
Antivir HIGH 7.2
CVE-2009-2761

Unquoted Windows search path vulnerability in the scheduler (sched.exe) in Avira AntiVir, AntiVir Premium, Premium Security Suite, and AntiVir Profes…

Mitigation only
Fix from $1,950 2009-08-13
Antivir HIGH 7.2
CVE-2008-6962

Avira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a c…

Mitigation only
Fix from $1,950 2009-08-13
Antivir HIGH 10.0
CVE-2007-2974EPSS 8%

Buffer overflow in the file parsing engine in Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to execute arbitrary code via a craft…

Fix: after 7.04.00.23
Fix from $1,950 2007-06-01
Antivir HIGH 7.8
CVE-2007-2972

The file parsing engine in Avira Antivir Antivirus before 7.04.00.24 allows remote attackers to cause a denial of service (application crash) via a c…

Fix: after 7.04.00.23
Fix from $1,950 2007-06-01
Antivir HIGH 7.8
CVE-2007-2973

Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed TA…

Fix: after 7.04.00.23
Fix from $1,950 2007-06-01
Antivir Personal HIGH 7.8
CVE-2007-1671

avpack32.dll before 7.3.0.6 in Avira AntiVir allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry s…

Fix: after 7.3.0.5
Fix from $1,950 2007-05-09