Show filters
83 Total Results
Displaying 61-70 of 83
Sort by:
Attacker Value
Unknown

CVE-2008-5536

Disclosure Date: December 12, 2008 (last updated October 04, 2023)
Panda Antivirus 9.0.0.4, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
0
Attacker Value
Unknown

CVE-2008-3156

Disclosure Date: July 11, 2008 (last updated October 04, 2023)
The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Update method.
0
Attacker Value
Unknown

CVE-2008-3155

Disclosure Date: July 11, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the Update method.
0
Attacker Value
Unknown

CVE-2008-1471

Disclosure Date: March 24, 2008 (last updated October 04, 2023)
The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or kernel panic), overwrite memory, or execute arbitrary code via a crafted IOCTL request that triggers an out-of-bounds write of kernel memory.
0
Attacker Value
Unknown

CVE-2007-4191

Disclosure Date: August 08, 2007 (last updated October 04, 2023)
Panda Antivirus 2008 stores service executables under the product's installation directory with weak permissions, which allows local users to obtain LocalSystem privileges by modifying PAVSRV51.EXE or other unspecified files, a related issue to CVE-2006-4657.
0
Attacker Value
Unknown

CVE-2007-3026

Disclosure Date: July 25, 2007 (last updated October 04, 2023)
Integer overflow in Panda Software AdminSecure allows remote attackers to execute arbitrary code via crafted packets with modified length values to TCP ports 19226 or 19227, resulting in a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2007-3969

Disclosure Date: July 25, 2007 (last updated October 04, 2023)
Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from an "Integer Cast Around."
0
Attacker Value
Unknown

CVE-2007-1673

Disclosure Date: May 09, 2007 (last updated October 04, 2023)
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
0
Attacker Value
Unknown

CVE-2007-1670

Disclosure Date: May 09, 2007 (last updated October 04, 2023)
Panda Software Antivirus before 20070402 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
0
Attacker Value
Unknown

CVE-2006-5966

Disclosure Date: November 17, 2006 (last updated October 04, 2023)
Panda ActiveScan 5.53.00, and other versions before 5.54.01, allows remote attackers to (1) reboot the system using the Reinicializar method in the ActiveScan.1 ActiveX control, or (2) determine arbitrary file existence and size via the ObtenerTamano method in the PAVPZ.SOS.1 ActiveX control.
0