Show filters
99 Total Results
Displaying 51-60 of 99
Sort by:
Attacker Value
Unknown

CVE-2019-15689

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products
Attacker Value
Unknown

CVE-2019-15687

Disclosure Date: November 26, 2019 (last updated November 27, 2024)
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component was vulnerable to remote disclosure of various information about the user's system (like Windows version and version of the product, host unique ID). Information Disclosure.
Attacker Value
Unknown

CVE-2019-15686

Disclosure Date: November 26, 2019 (last updated November 27, 2024)
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component allowed an attacker remotely disable various anti-virus protection features. DoS, Bypass.
Attacker Value
Unknown

CVE-2019-15685

Disclosure Date: November 26, 2019 (last updated November 27, 2024)
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component allowed an attacker remotely disable such product's security features as private browsing and anti-banner. Bypass.
Attacker Value
Unknown

CVE-2019-15688

Disclosure Date: November 26, 2019 (last updated November 27, 2024)
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component did not adequately inform the user about the threat of redirecting to an untrusted site. Bypass.
Attacker Value
Unknown

Implicit loading of DLLs

Disclosure Date: November 13, 2019 (last updated November 08, 2023)
A Privilege Escalation vulnerability in the Microsoft Windows client in McAfee Total Protection 16.0.R22 and earlier allows administrators to execute arbitrary code via carefully placing malicious files in specific locations protected by administrator permission.
Attacker Value
Unknown

CVE-2019-16897

Disclosure Date: October 28, 2019 (last updated November 27, 2024)
In K7 Antivirus Premium 16.0.xxx through 16.0.0120; K7 Total Security 16.0.xxx through 16.0.0120; and K7 Ultimate Security 16.0.xxx through 16.0.0120, the module K7TSHlpr.dll improperly validates the administrative privileges of the user, allowing arbitrary registry writes in the K7AVOptn.dll module to facilitate escalation of privileges via inter-process communication with a service process.
Attacker Value
Unknown

CVE-2016-10899

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability.
0
Attacker Value
Unknown

CVE-2016-10898

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
The total-security plugin before 3.4.1 for WordPress has XSS.
0
Attacker Value
Unknown

CVE-2019-14242

Disclosure Date: July 30, 2019 (last updated November 27, 2024)
An issue was discovered in Bitdefender products for Windows (Bitdefender Endpoint Security Tool versions prior to 6.6.8.115; and Bitdefender Antivirus Plus, Bitdefender Internet Security, and Bitdefender Total Security versions prior to 23.0.24.120) that can lead to local code injection. A local attacker with administrator privileges can create a malicious DLL file in %SystemRoot%\System32\ that will be executed with local user privileges.
0