drweb records
7 published records for vendor drweb.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-264 Permissions, Privileges, and Access Controls3
- CWE-20 Improper Input Validation1
- CWE-347 Improper Verification of Cryptographic Signature1
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
- CWE-427 Uncontrolled Search Path Element1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
46Plan | CVE-2012-1453No exploit | The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Treca · etrust vet antivirus · CWE-264 | Medium4.3 | — | 97.7% | Mar 21, 2012 |
43Plan | CVE-2012-1454No exploit | The ELF file parser in Dr.Web 5.0.2.03300, eSafe 7.0.17.0, McAfee Gateway (formerly Webwasher) 2010.1C, Rising Antivirus 22.83.00.03, Fortinmcafee · gateway · CWE-264 | Medium4.3 | — | 88.2% | Mar 21, 2012 |
38Monitor | CVE-2008-5526No exploit | DrWeb Anti-virus 4.44.0.09170, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML docudrweb · anti-virus · CWE-20 | Critical9.3 | — | 3.0% | Dec 12, 2008 |
37Monitor | CVE-2012-1447No exploit | The ELF file parser in Fortinet Antivirus 4.2.254.0, eSafe 7.0.17.0, Dr.Web 5.0.2.03300, and Panda Antivirus 10.0.2.7 allows remote attackerfortinet · fortinet antivirus · CWE-264 | Medium4.3 | — | 67.7% | Mar 21, 2012 |
31Monitor | CVE-2021-28130No exploit | Dr.Web Firewall 12.5.2.4160 on Windows incorrectly restricts applications signed by Dr.Web.drweb · security space · CWE-427 | High7.8 | — | 0.4% | Sep 24, 2021 |
31Monitor | CVE-2020-23967No exploit | Dr.Web Security Space versions 11 and 12 allow elevation of privilege for local users without administrative privileges to NT AUTHORITY\SYSTdrweb · security space · CWE-347 | High7.8 | — | 0.3% | Mar 8, 2021 |
28Monitor | CVE-2010-5159No exploit | Race condition in Dr.Web Security Space Pro 6.0.0.03100 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dadrweb · web security space · CWE-362 | High7.0 | — | 0.3% | Aug 25, 2012 |
- CVE-2012-145346Plan
The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Tre
MediumCVSS 4.3No exploitEPSS 98%ca · etrust vet antivirusMar 21, 2012
- CVE-2012-145443Plan
The ELF file parser in Dr.Web 5.0.2.03300, eSafe 7.0.17.0, McAfee Gateway (formerly Webwasher) 2010.1C, Rising Antivirus 22.83.00.03, Fortin
MediumCVSS 4.3No exploitEPSS 88%mcafee · gatewayMar 21, 2012
- CVE-2008-552638Monitor
DrWeb Anti-virus 4.44.0.09170, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML docu
CriticalCVSS 9.3No exploitEPSS 3%drweb · anti-virusDec 12, 2008
- CVE-2012-144737Monitor
The ELF file parser in Fortinet Antivirus 4.2.254.0, eSafe 7.0.17.0, Dr.Web 5.0.2.03300, and Panda Antivirus 10.0.2.7 allows remote attacker
MediumCVSS 4.3No exploitEPSS 68%fortinet · fortinet antivirusMar 21, 2012
- CVE-2021-2813031Monitor
Dr.Web Firewall 12.5.2.4160 on Windows incorrectly restricts applications signed by Dr.Web.
HighCVSS 7.8No exploitEPSS 0%drweb · security spaceSep 24, 2021
- CVE-2020-2396731Monitor
Dr.Web Security Space versions 11 and 12 allow elevation of privilege for local users without administrative privileges to NT AUTHORITY\SYST
HighCVSS 7.8No exploitEPSS 0%drweb · security spaceMar 8, 2021
- CVE-2010-515928Monitor
Race condition in Dr.Web Security Space Pro 6.0.0.03100 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute da
HighCVSS 7.0No exploitEPSS 0%drweb · web security spaceAug 25, 2012