Записи Avast
75 опубликованных записей вендора avast.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 6,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-59 Improper Link Resolution Before File Access ('Link Following')10
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer7
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition4
- CWE-20 Improper Input Validation4
- CWE-787 Out-of-bounds Write4
- CWE-476 NULL Pointer Dereference3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
75 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-23907Эксплойта нет | An issue was discovered in retdec v3.3.avast · retdec · CWE-787 | Критическая9,8 | — | 2,6 % | 21 апр. 2021 г. |
40В плане | CVE-2020-10867Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus · CWE-668 | Критическая9,8 | — | 2,2 % | 1 апр. 2020 г. |
40В плане | CVE-2017-8307Эксплойта нет | In Avast Antivirus before v17, using the LPC interface API exposed by the AvastSVC.exe Windows service, it is possible to launch predefined avast · antivirus | Критическая9,8 | — | 1,8 % | 27 апр. 2017 г. |
40В плане | CVE-2022-4291Эксплойта нет | Aswjsflt.dll in Avast Antivirus windows caused a crash of the Mozilla Firefox browser due to heap corruptionavast · script shield · CWE-119 | Критическая10,0 | — | 0,4 % | 7 дек. 2022 г. |
39Наблюдать | CVE-2010-3126Proof of concept | Untrusted search path vulnerability in avast! Free Antivirus version 5.0.594 and earlier allows local users, and possibly remote attackers, avast · avast antivirus free | Критическая9,3 | — | 7,8 % | 26 авг. 2010 г. |
39Наблюдать | CVE-2007-2845Эксплойта нет | Heap-based buffer overflow in the CAB unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted remote attackers to eavast · avast antivirus | Критическая9,3 | — | 6,3 % | 24 мая 2007 г. |
39Наблюдать | CVE-2025-3500Proof of concept | Integer Overflow in Avast Antiviurs 25.1.981.6 on Windows may result in privilege escalationavast · antivirus · CWE-190 | Критическая9,8 | — | 0,5 % | 1 дек. 2025 г. |
38Наблюдать | CVE-2008-5523Эксплойта нет | avast! antivirus 4.8.1281.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML documeavast · avast antivirus · CWE-20 | Критическая9,3 | — | 2,9 % | 12 дек. 2008 г. |
35Наблюдать | CVE-2022-4173Эксплойта нет | Avast and AVG Antivirus for Windows vulnerable to Privilege Escalationavast · avast · CWE-269 | Высокая8,8 | — | 0,7 % | 5 дек. 2022 г. |
35Наблюдать | CVE-2021-45336Эксплойта нет | Privilege escalation vulnerability in the Sandbox component of Avast Antivirus prior to 20.4 allows a local sandboxed code to gain elevated avast · antivirus | Высокая8,8 | — | 0,5 % | 27 дек. 2021 г. |
35Наблюдать | CVE-2021-45337Эксплойта нет | Privilege escalation vulnerability in the Self-Defense driver of Avast Antivirus prior to 20.8 allows a local user with SYSTEM privileges toavast · antivirus | Высокая8,8 | — | 0,4 % | 27 дек. 2021 г. |
35Наблюдать | CVE-2021-45335Эксплойта нет | Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of avast · antivirus · CWE-276 | Высокая8,8 | — | 0,4 % | 27 дек. 2021 г. |
33Наблюдать | CVE-2016-3986Proof of concept | Avast allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted PE file, reavast · avast · CWE-119 | Высокая7,8 | — | 7,9 % | 11 апр. 2016 г. |
32Наблюдать | CVE-2007-1672Эксплойта нет | avast! antivirus before 4.7.981 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry strucavast · avast antivirus | Высокая7,8 | — | 3,2 % | 8 мая 2007 г. |
32Наблюдать | CVE-2007-1673Эксплойта нет | unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite looamavis · amavis · CWE-399 | Высокая7,8 | — | 3,2 % | 8 мая 2007 г. |
32Наблюдать | CVE-2019-18894Эксплойта нет | In Avast Premium Security 19.8.2393, attackers can send a specially crafted request to the local web server run by Avast Antivirus on port 2avast · premium security · CWE-78 | Высокая7,8 | — | 1,8 % | 13 янв. 2020 г. |
31Наблюдать | CVE-2020-10863Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus | Высокая7,5 | — | 2,1 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2020-10860Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus · CWE-787 | Высокая7,5 | — | 2,1 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2020-10868Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus | Высокая7,5 | — | 1,7 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2020-10861Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus | Высокая7,5 | — | 1,7 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2020-10865Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus · CWE-829 | Высокая7,5 | — | 1,7 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2019-17093Эксплойта нет | An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8.avast · antivirus · CWE-427 | Высокая7,8 | — | 0,6 % | 23 окт. 2019 г. |
31Наблюдать | CVE-2019-17190Эксплойта нет | A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101.avast · secure browser · CWE-863 | Высокая7,8 | — | 0,5 % | 27 янв. 2020 г. |
31Наблюдать | CVE-2020-10862Эксплойта нет | An issue was discovered in Avast Antivirus before 20.avast · antivirus | Высокая7,8 | — | 0,5 % | 1 апр. 2020 г. |
31Наблюдать | CVE-2015-8620Эксплойта нет | Heap-based buffer overflow in the Avast virtualization driver (aswSnx.sys) in Avast Internet Security, Pro Antivirus, Premier, and Free Antiavast · avast free antivirus · CWE-119 | Высокая7,8 | — | 0,5 % | 13 апр. 2016 г. |
- CVE-2020-2390740В плане
An issue was discovered in retdec v3.3.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %avast · retdec21 апр. 2021 г.
- CVE-2020-1086740В плане
An issue was discovered in Avast Antivirus before 20.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2017-830740В плане
In Avast Antivirus before v17, using the LPC interface API exposed by the AvastSVC.exe Windows service, it is possible to launch predefined
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %avast · antivirus27 апр. 2017 г.
- CVE-2022-429140В плане
Aswjsflt.dll in Avast Antivirus windows caused a crash of the Mozilla Firefox browser due to heap corruption
КритическаяCVSS 10,0Эксплойта нетEPSS 0 %avast · script shield7 дек. 2022 г.
- CVE-2010-312639Наблюдать
Untrusted search path vulnerability in avast! Free Antivirus version 5.0.594 and earlier allows local users, and possibly remote attackers,
КритическаяCVSS 9,3Proof of conceptEPSS 8 %avast · avast antivirus free26 авг. 2010 г.
- CVE-2007-284539Наблюдать
Heap-based buffer overflow in the CAB unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted remote attackers to e
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %avast · avast antivirus24 мая 2007 г.
- CVE-2025-350039Наблюдать
Integer Overflow in Avast Antiviurs 25.1.981.6 on Windows may result in privilege escalation
КритическаяCVSS 9,8Proof of conceptEPSS 0 %avast · antivirus1 дек. 2025 г.
- CVE-2008-552338Наблюдать
avast! antivirus 4.8.1281.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML docume
КритическаяCVSS 9,3Эксплойта нетEPSS 3 %avast · avast antivirus12 дек. 2008 г.
- CVE-2022-417335Наблюдать
Avast and AVG Antivirus for Windows vulnerable to Privilege Escalation
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %avast · avast5 дек. 2022 г.
- CVE-2021-4533635Наблюдать
Privilege escalation vulnerability in the Sandbox component of Avast Antivirus prior to 20.4 allows a local sandboxed code to gain elevated
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %avast · antivirus27 дек. 2021 г.
- CVE-2021-4533735Наблюдать
Privilege escalation vulnerability in the Self-Defense driver of Avast Antivirus prior to 20.8 allows a local user with SYSTEM privileges to
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %avast · antivirus27 дек. 2021 г.
- CVE-2021-4533535Наблюдать
Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %avast · antivirus27 дек. 2021 г.
- CVE-2016-398633Наблюдать
Avast allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted PE file, re
ВысокаяCVSS 7,8Proof of conceptEPSS 8 %avast · avast11 апр. 2016 г.
- CVE-2007-167232Наблюдать
avast! antivirus before 4.7.981 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry struc
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %avast · avast antivirus8 мая 2007 г.
- CVE-2007-167332Наблюдать
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loo
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %amavis · amavis8 мая 2007 г.
- CVE-2019-1889432Наблюдать
In Avast Premium Security 19.8.2393, attackers can send a specially crafted request to the local web server run by Avast Antivirus on port 2
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %avast · premium security13 янв. 2020 г.
- CVE-2020-1086331Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2020-1086031Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2020-1086831Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2020-1086131Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2020-1086531Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %avast · antivirus1 апр. 2020 г.
- CVE-2019-1709331Наблюдать
An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %avast · antivirus23 окт. 2019 г.
- CVE-2019-1719031Наблюдать
A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %avast · secure browser27 янв. 2020 г.
- CVE-2020-1086231Наблюдать
An issue was discovered in Avast Antivirus before 20.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %avast · antivirus1 апр. 2020 г.
- CVE-2015-862031Наблюдать
Heap-based buffer overflow in the Avast virtualization driver (aswSnx.sys) in Avast Internet Security, Pro Antivirus, Premier, and Free Anti
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %avast · avast free antivirus13 апр. 2016 г.