Vulnerabilities > F Secure > Client Security

DATE CVE VULNERABILITY TITLE RISK
2023-11-27 CVE-2023-49321 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow a Denial of Service because scanning a crafted file takes a long time, and causes the scanner to hang.
network
low complexity
f-secure
5.3
2023-11-27 CVE-2023-49322 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow a Denial of Service because there is an unpack handler crash that can lead to a scanning engine crash.
network
low complexity
f-secure
7.5
2023-09-22 CVE-2023-43760 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow Denial of Service via a fuzzed PE32 file.
network
low complexity
f-secure
7.5
2023-09-22 CVE-2023-43761 Infinite Loop vulnerability in F-Secure products
Certain WithSecure products allow Denial of Service (infinite loop).
network
low complexity
f-secure CWE-835
7.5
2023-09-22 CVE-2023-43765 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow Denial of Service in the aeelf component.
network
low complexity
f-secure
7.5
2023-09-22 CVE-2023-43766 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler.
local
low complexity
f-secure
7.8
2023-09-22 CVE-2023-43767 Unspecified vulnerability in F-Secure products
Certain WithSecure products allow Denial of Service via the aepack archive unpack handler.
network
low complexity
f-secure
7.5
2022-03-10 CVE-2021-44750 Unspecified vulnerability in F-Secure products
An arbitrary code execution vulnerability was found in the F-Secure Support Tool.
network
f-secure
8.5
2021-08-05 CVE-2021-33597 Unspecified vulnerability in F-Secure products
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files.
network
f-secure
4.3
2019-05-17 CVE-2019-11644 Uncontrolled Search Path Element vulnerability in F-Secure products
In the F-Secure installer in F-Secure SAFE for Windows before 17.6, F-Secure Internet Security before 17.6, F-Secure Anti-Virus before 17.6, F-Secure Client Security Standard and Premium before 14.10, F-Secure PSB Workstation Security before 12.01, and F-Secure Computer Protection Standard and Premium before 19.3, a local user can escalate their privileges through a DLL hijacking attack against the installer.
network
f-secure CWE-427
6.8