Vulnerabilities > Superantispyware > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-28 CVE-2020-22061 Unspecified vulnerability in Superantispyware 8.0.0.1050
SUPERAntispyware v8.0.0.1050 was discovered to contain an issue in the component saskutil64.sys.
local
low complexity
superantispyware
7.8
2020-09-01 CVE-2020-24955 Link Following vulnerability in Superantispyware Professional X
SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware.
local
low complexity
superantispyware CWE-59
7.8
2018-01-31 CVE-2018-6475 Untrusted Search Path vulnerability in Superantispyware 6.0.1254
In SUPERAntiSpyware Professional Trial 6.0.1254, SUPERAntiSpyware.exe allows DLL hijacking, leading to Escalation of Privileges.
local
low complexity
superantispyware CWE-426
7.8
2018-01-31 CVE-2018-6474 Improper Input Validation vulnerability in Superantispyware 6.0.1254
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402148.
local
low complexity
superantispyware CWE-20
7.8
2018-01-31 CVE-2018-6473 Improper Input Validation vulnerability in Superantispyware 6.0.1254
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402080.
local
low complexity
superantispyware CWE-20
7.8
2018-01-31 CVE-2018-6472 Improper Input Validation vulnerability in Superantispyware 6.0.1254
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C40204c.
local
low complexity
superantispyware CWE-20
7.8
2018-01-31 CVE-2018-6471 Improper Input Validation vulnerability in Superantispyware 6.0.1254
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402078.
local
low complexity
superantispyware CWE-20
7.8