Vulnerabilities > Quickheal > Total Security > 17.00

DATE CVE VULNERABILITY TITLE RISK
2020-11-30 CVE-2020-27587 Weak Password Requirements vulnerability in Quickheal Total Security
Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password.
local
low complexity
quickheal CWE-521
6.7
2020-11-30 CVE-2020-27586 Cleartext Transmission of Sensitive Information vulnerability in Quickheal Total Security
Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.
network
high complexity
quickheal CWE-319
5.9
2020-11-30 CVE-2020-27585 Weak Password Requirements vulnerability in Quickheal Total Security
Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.
local
low complexity
quickheal CWE-521
4.4
2018-07-25 CVE-2018-8090 Uncontrolled Search Path Element vulnerability in Quickheal Antivirus Pro, Internet Security and Total Security
Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT32.exe) - Version 10.0.1.38; Quick Heal Internet Security 64 bit 17.00 (QHIS64.exe), (QHISFT64.exe) - Version 10.0.0.37; Quick Heal Internet Security 32 bit 17.00 (QHIS32.exe), (QHISFT32.exe) - Version 10.0.0.37; Quick Heal AntiVirus Pro 64 bit 17.00 (QHAV64.exe), (QHAVFT64.exe) - Version 10.0.0.37; and Quick Heal AntiVirus Pro 32 bit 17.00 (QHAV32.exe), (QHAVFT32.exe) - Version 10.0.0.37 allow DLL Hijacking because of Insecure Library Loading.
local
low complexity
quickheal CWE-427
7.8