Vulnerabilities > Eset > Internet Security > 10.0.337.1

DATE CVE VULNERABILITY TITLE RISK
2024-07-16 CVE-2024-3779 Incorrect Default Permissions vulnerability in Eset products
Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security product inoperable, provided non-default preconditions were met.
local
low complexity
eset CWE-276
5.5
2024-02-15 CVE-2024-0353 Unspecified vulnerability in Eset products
Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permission.
local
low complexity
eset
7.8
2022-02-09 CVE-2021-37852 Improper Privilege Management vulnerability in Eset products
ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to escalate privileges in the context of NT AUTHORITY\SYSTEM.
local
low complexity
eset CWE-269
7.8
2021-01-26 CVE-2020-26941 Incorrect Default Permissions vulnerability in Eset products
A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions.
local
low complexity
eset CWE-276
5.5
2020-03-06 CVE-2020-10193 Interpretation Conflict vulnerability in Eset products
ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive.
network
low complexity
eset CWE-436
7.5
2020-02-18 CVE-2020-9264 Interpretation Conflict vulnerability in Eset products
ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive.
local
low complexity
eset CWE-436
5.5