Vulnerabilities > Comodo

DATE CVE VULNERABILITY TITLE RISK
2015-06-09 CVE-2014-7872 Permissions, Privileges, and Access Controls vulnerability in Comodo Geekbuddy 4.18.120
Comodo GeekBuddy before 4.18.121 does not restrict access to the VNC server, which allows local users to gain privileges by connecting to the server.
local
low complexity
comodo CWE-264
7.2
2015-02-03 CVE-2014-9633 Permissions, Privileges, and Access Controls vulnerability in Comodo Backup 4.4.1
The bdisk.sys driver in COMODO Backup before 4.4.1.23 allows remote attackers to gain privileges via a crafted device handle, which triggers a NULL pointer dereference.
network
low complexity
comodo CWE-264
7.5
2012-08-26 CVE-2011-5123 Cryptographic Issues vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in signed executable files have been revoked, which has unknown impact and remote attack vectors.
network
low complexity
comodo CWE-310
critical
10.0
2012-08-26 CVE-2011-5122 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 allows remote attackers to cause a denial of service (application crash) via a crafted compressed file.
network
comodo CWE-119
4.3
2012-08-26 CVE-2011-5121 Cryptographic Issues vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not properly check whether unspecified X.509 certificates are revoked, which has unknown impact and remote attack vectors.
network
low complexity
comodo CWE-310
critical
10.0
2012-08-26 CVE-2011-5120 Denial-Of-Service vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 5.4.189822.1355 allows remote attackers to cause a denial of service (application crash) via a crafted .PST file.
network
comodo
4.3
2012-08-26 CVE-2011-5119 Race Condition vulnerability in Comodo Internet Security
Multiple race conditions in Comodo Internet Security before 5.8.211697.2124 allow local users to bypass the Defense+ feature via unspecified vectors.
local
comodo CWE-362
1.9
2012-08-26 CVE-2011-5118 Race Condition vulnerability in Comodo Internet Security
Multiple race conditions in Comodo Internet Security before 5.8.213334.2131 allow local users to bypass the Defense+ feature via unspecified vectors.
local
comodo CWE-362
1.9
2012-08-26 CVE-2010-5186 Denial-Of-Service vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 4.1.150349.920 allows remote attackers to cause a denial of service (application crash) via a crafted file.
network
comodo
4.3
2012-08-26 CVE-2010-5185 Improper Input Validation vulnerability in Comodo Internet Security
The Antivirus component in Comodo Internet Security before 5.3.174622.1216 does not check whether X.509 certificates in signed executable files have been revoked, which has unknown impact and remote attack vectors.
network
low complexity
comodo CWE-20
critical
10.0