Vulnerabilities > Eset > Smart Security > 10.0.337.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-16 | CVE-2024-3779 | Incorrect Default Permissions vulnerability in Eset products Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security product inoperable, provided non-default preconditions were met. | 5.5 |
2024-02-15 | CVE-2024-0353 | Unspecified vulnerability in Eset products Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permission. | 7.8 |
2022-02-09 | CVE-2021-37852 | Improper Privilege Management vulnerability in Eset products ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to escalate privileges in the context of NT AUTHORITY\SYSTEM. | 7.8 |
2021-01-26 | CVE-2020-26941 | Incorrect Default Permissions vulnerability in Eset products A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions. | 5.5 |
2020-03-06 | CVE-2020-10193 | Interpretation Conflict vulnerability in Eset products ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. | 7.5 |
2020-03-05 | CVE-2020-10180 | Interpretation Conflict vulnerability in Eset products The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. | 9.8 |
2020-02-18 | CVE-2020-9264 | Interpretation Conflict vulnerability in Eset products ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression Information Field in a ZIP archive. | 5.5 |