Vulnerability index

Browse CVEs

30 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Management Agent MEDIUM 6.7
CVE-2025-13818

Local privilege escalation vulnerability via insecure temporary batch file execution in ESET Management Agent

Fix: after 12.5.2104.0
Fix from $1,600 2026-02-06
Internet Security MEDIUM 5.5
CVE-2024-3779

Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security prod…

Fix: 11.0.12012.0 / 11.0.15004.0+
Fix from $1,600 2024-07-16
Endpoint Antivirus HIGH 7.8
CVE-2024-0353

Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permi…

Fix: 7.3.10018.0 / 7.3.12013.0+
Fix from $1,950 2024-02-15
Endpoint Antivirus MEDIUM 5.5
CVE-2023-7043

Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with the NT AUTHORITY\NetworkServ…

Fix: 11.0.2032.0 / 17.0.15.0+
Fix from $1,600 2024-01-31
Endpoint Antivirus HIGH 8.6
CVE-2023-5594

Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate signed using the MD5 or …

Mitigation only
Fix from $1,950 2023-12-21
Endpoint Antivirus HIGH 7.8
CVE-2023-3160

The vulnerability potentially allows an attacker to misuse ESET’s file operations during the module update to delete or move files without having pro…

Mitigation only
Fix from $1,950 2023-08-14
Cyber Security HIGH 7.8
CVE-2023-2847

During internal security analysis, a local privilege escalation vulnerability has been identified. On a machine with the affected ESET product instal…

Fix: 7.3.3600.0 / 7.3.3700.0+
Fix from $1,950 2023-06-15
Endpoint Encryption MEDIUM 6.5
CVE-2022-2402

The vulnerability in the driver dlpfde.sys enables a user logged into the system to perform system calls leading to kernel stack overflow, resulting …

Fix: 1.3.2.32 / 5.1.2.26+
Fix from $1,600 2022-09-06
Endpoint Antivirus HIGH 7.8
CVE-2021-37851

Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the installer to run ma…

Fix: 8.0.2053.0 / 8.0.10020.0+
Fix from $1,950 2022-05-11
Endpoint Antivirus HIGH 7.1
CVE-2022-27167

Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to exploit "Repair" and "Uninstall" features what may le…

Fix: 8.0.2053.0 / 8.0.10020.0+
Fix from $1,950 2022-05-10
Endpoint Antivirus HIGH 7.5
CVE-2022-0615

Use-after-free in eset_rtp kernel module used in ESET products for Linux allows potential attacker to trigger denial-of-service condition on the syst…

Fix: after 8.1.813.0
Fix from $1,950 2022-02-25
Endpoint Antivirus HIGH 7.8
CVE-2021-37852

ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to escalate privileges in …

Fix: 7.3.2055.0 / 7.3.10014.0+
Fix from $1,950 2022-02-09
Cyber Security MEDIUM 5.5
CVE-2021-37850

ESET was made aware of a vulnerability in its consumer and business products for macOS that enables a user logged on to the system to stop the ESET d…

Fix: after 6.10.910.0
Fix from $1,600 2021-11-08
Endpoint Antivirus MEDIUM 5.5
CVE-2020-26941

A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file vi…

Fix: after 13.2
Fix from $1,600 2021-01-26
Antivirus And Antispyware HIGH 7.8
CVE-2020-11446

ESET Antivirus and Antispyware Module module 1553 through 1560 allows a user with limited access rights to create hard links in some ESET directories…

Fix: after 1560
Fix from $1,950 2020-04-29
Nod32 Antivirus HIGH 7.5
CVE-2020-10193

ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. This affects versions be…

Fix: 4 / 1294+
Fix from $1,950 2020-03-06
Cyber Security CRITICAL 9.8
CVE-2020-10180

The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions before 1294 of Smart S…

Fix: 1294+
Fix from $2,300 2020-03-05
Cyber Security MEDIUM 6.7
CVE-2019-19792

A permissions issue in ESET Cyber Security before 6.8.300.0 for macOS allows a local attacker to escalate privileges by appending data to root-owned …

Fix: 6.8.300.0+
Fix from $1,600 2020-03-03
Cyber Security MEDIUM 6.5
CVE-2019-17549

ESET Cyber Security before 6.8.1.0 is vulnerable to a denial-of-service allowing any user to stop (kill) ESET processes. An attacker can abuse this b…

Fix: 6.8.1.0+
Fix from $1,600 2020-03-03
Cyber Security MEDIUM 5.5
CVE-2020-9264

ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive. This affects vers…

Fix: 1296+
Fix from $1,600 2020-02-18
Cyber Security HIGH 7.8
CVE-2019-16519

ESET Cyber Security 6.7.900.0 for macOS allows a local attacker to execute unauthorized commands as root by abusing an undocumented feature in schedu…

Fix: after 6.7.900.0
Fix from $1,950 2019-10-14
Compusec HIGH 7.8
CVE-2018-0649

Untrusted search path vulnerability in the installers of multiple Canon IT Solutions Inc. software programs (ESET Smart Security Premium, ESET Intern…

Mitigation only
Fix from $1,950 2018-09-07
Endpoint Antivirus MEDIUM 5.9
CVE-2016-9892

The esets_daemon service in ESET Endpoint Antivirus for macOS before 6.4.168.0 and Endpoint Security for macOS before 6.4.168.0 does not properly ver…

No fix yet
Fix from $1,600 2017-03-02
Nod32 CRITICAL 9.8
CVE-2015-8841EPSS 9%

Heap-based buffer overflow in the Archive support module in ESET NOD32 before update 11861 allows remote attackers to execute arbitrary code via a la…

No fix yet
Fix from $2,300 2016-04-12
Smart Security MEDIUM 6.9
CVE-2014-4973

The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smart Security and ESET…

No fix yet
Fix from $1,600 2014-09-23
Smart Security HIGH 7.2
CVE-2008-7107

easdrv.sys in ESET Smart Security 3.0.667.0 allows local users to cause a denial of service (crash) via a crafted IOCTL 0x222003 request to the \\.\e…

No fix yet
Fix from $1,950 2009-08-28
Smart Security HIGH 7.2
CVE-2008-5724

The Personal Firewall driver (aka epfw.sys) 3.0.672.0 and earlier in ESET Smart Security 3.0.672 and earlier allows local users to gain privileges vi…

Fix: after 3.0.672
Fix from $1,950 2008-12-26
Smart Security HIGH 9.3
CVE-2008-5527

ESET Smart Security, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an …

Mitigation only
Fix from $1,950 2008-12-12
Nod32 Antivirus HIGH 9.3
CVE-2008-5534

ESET NOD32 Antivirus 3662 and possibly 3440, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML…

Mitigation only
Fix from $1,950 2008-12-12
Nod32 Antivirus HIGH 7.6
CVE-2007-3970EPSS 6%

Race condition in ESET NOD32 Antivirus before 2.2289 allows remote attackers to execute arbitrary code via a crafted CAB file, which triggers heap co…

Fix: 2.2289+
Fix from $1,950 2007-07-25