Записи Comodo
91 опубликованных записей вендора comodo.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 30
- С записью об исправлении
- 1,1 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')30
- CWE-264 Permissions, Privileges, and Access Controls11
- CWE-59 Improper Link Resolution Before File Access ('Link Following')5
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')4
- CWE-310 Cryptographic Issues3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
91 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
64На этой неделе | CVE-2018-17431Proof of concept | Web Console in Comodo UTM Firewall before 2.7.0 allows remote attackers to execute arbitrary code without authentication via a crafted URL.comodo · unified threat management firewall · CWE-287 | Критическая9,8 | — | 83,9 % | 30 янв. 2019 г. |
47В плане | CVE-2012-1456Эксплойта нет | The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.avg · avg anti-virus · CWE-264 | Средняя4,3 | — | 99,9 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1459Эксплойта нет | The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8ahnlab · v3 internet security · CWE-264 | Средняя4,3 | — | 99,8 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1443Эксплойта нет | The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 2010cat · quick heal · CWE-264 | Средняя4,3 | — | 99,6 % | 21 мар. 2012 г. |
46В плане | CVE-2012-1430Эксплойта нет | The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning Ebitdefender · bitdefender · CWE-264 | Средняя4,3 | — | 96,0 % | 21 мар. 2012 г. |
46В плане | CVE-2012-1431Эксплойта нет | The ELF file parser in Bitdefender 7.2, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Secbitdefender · bitdefender · CWE-264 | Средняя4,3 | — | 96,0 % | 21 мар. 2012 г. |
46В плане | CVE-2008-0470Proof of concept | A certain ActiveX control in Comodo AntiVirus 2.0 allows remote attackers to execute arbitrary commands via the ExecuteStr method.comodo · comodo antivirus | Критическая9,3 | — | 30,9 % | 29 янв. 2008 г. |
45В плане | CVE-2012-1463Эксплойта нет | The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5ahnlab · v3 internet security · CWE-264 | Средняя4,3 | — | 94,2 % | 21 мар. 2012 г. |
45В плане | CVE-2012-1429Эксплойта нет | The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.comodo · comodo antivirus · CWE-264 | Средняя4,3 | — | 92,5 % | 21 мар. 2012 г. |
40В плане | CVE-2011-5121Эксплойта нет | The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not properly check whether unspecified X.509 certificates arcomodo · comodo internet security · CWE-310 | Критическая10,0 | — | 1,2 % | 25 авг. 2012 г. |
40В плане | CVE-2010-5185Эксплойта нет | The Antivirus component in Comodo Internet Security before 5.3.174622.1216 does not check whether X.509 certificates in signed executable ficomodo · comodo internet security · CWE-20 | Критическая10,0 | — | 1,2 % | 25 авг. 2012 г. |
40В плане | CVE-2011-5123Эксплойта нет | The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in signed executable ficomodo · comodo internet security · CWE-310 | Критическая10,0 | — | 1,2 % | 25 авг. 2012 г. |
33Наблюдать | CVE-2025-7097Эксплойта нет | Comodo Internet Security Premium Manifest File cis_update_x64.xml os command injectioncomodo · internet security · CWE-77 | Высокая8,2 | — | 4,2 % | 6 июл. 2025 г. |
32Наблюдать | CVE-2014-9633Proof of concept | The bdisk.sys driver in COMODO Backup before 4.4.1.23 allows remote attackers to gain privileges via a crafted device handle, which triggerscomodo · backup · CWE-264 | Высокая7,5 | — | 8,1 % | 3 февр. 2015 г. |
32Наблюдать | CVE-2025-7096Эксплойта нет | Comodo Internet Security Premium Manifest File cis_update_x64.xml integrity checkcomodo · internet security · CWE-345 | Высокая8,2 | — | 0,5 % | 6 июл. 2025 г. |
31Наблюдать | CVE-2019-18215Эксплойта нет | An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0.comodo · comodo internet security · CWE-427 | Высокая7,8 | — | 0,6 % | 18 нояб. 2019 г. |
31Наблюдать | CVE-2019-3969Эксплойта нет | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of COM clients.comodo · antivirus | Высокая7,8 | — | 0,6 % | 17 июл. 2019 г. |
31Наблюдать | CVE-2022-34008Эксплойта нет | Comodo Antivirus 12.2.2.8012 has a quarantine flaw that allows privilege escalation.comodo · antivirus · CWE-59 | Высокая7,8 | — | 0,5 % | 21 июн. 2022 г. |
31Наблюдать | CVE-2024-7248Эксплойта нет | Comodo Internet Security Pro Directory Traversal Local Privilege Escalation Vulnerabilitycomodo · internet security · CWE-22 | Высокая7,8 | — | 0,5 % | 29 июл. 2024 г. |
31Наблюдать | CVE-2024-7251Эксплойта нет | Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerabilitycomodo · internet security · CWE-59 | Высокая7,8 | — | 0,3 % | 29 июл. 2024 г. |
31Наблюдать | CVE-2024-7250Эксплойта нет | Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerabilitycomodo · internet security · CWE-59 | Высокая7,8 | — | 0,3 % | 29 июл. 2024 г. |
31Наблюдать | CVE-2024-7252Эксплойта нет | Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerabilitycomodo · internet security · CWE-59 | Высокая7,8 | — | 0,3 % | 29 июл. 2024 г. |
31Наблюдать | CVE-2024-7249Эксплойта нет | Comodo Firewall Link Following Local Privilege Escalation Vulnerabilitycomodo · firewall · CWE-59 | Высокая7,8 | — | 0,3 % | 29 июл. 2024 г. |
28Наблюдать | CVE-2014-7872Proof of concept | Comodo GeekBuddy before 4.18.121 does not restrict access to the VNC server, which allows local users to gain privileges by connecting to thcomodo · geekbuddy · CWE-264 | Высокая7,2 | — | 1,0 % | 9 июн. 2015 г. |
28Наблюдать | CVE-2006-6619Proof of concept | AVG Anti-Virus plus Firewall 7.5.431 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypassavg · antivirus plus firewall | Высокая7,2 | — | 1,0 % | 18 дек. 2006 г. |
- CVE-2018-1743164На этой неделе
Web Console in Comodo UTM Firewall before 2.7.0 allows remote attackers to execute arbitrary code without authentication via a crafted URL.
КритическаяCVSS 9,8Proof of conceptEPSS 84 %comodo · unified threat management firewall30 янв. 2019 г.
- CVE-2012-145647В плане
The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.
СредняяCVSS 4,3Эксплойта нетEPSS 100 %avg · avg anti-virus21 мар. 2012 г.
- CVE-2012-145947В плане
The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8
СредняяCVSS 4,3Эксплойта нетEPSS 100 %ahnlab · v3 internet security21 мар. 2012 г.
- CVE-2012-144347В плане
The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 2010
СредняяCVSS 4,3Эксплойта нетEPSS 100 %cat · quick heal21 мар. 2012 г.
- CVE-2012-143046В плане
The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning E
СредняяCVSS 4,3Эксплойта нетEPSS 96 %bitdefender · bitdefender21 мар. 2012 г.
- CVE-2012-143146В плане
The ELF file parser in Bitdefender 7.2, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Sec
СредняяCVSS 4,3Эксплойта нетEPSS 96 %bitdefender · bitdefender21 мар. 2012 г.
- CVE-2008-047046В плане
A certain ActiveX control in Comodo AntiVirus 2.0 allows remote attackers to execute arbitrary commands via the ExecuteStr method.
КритическаяCVSS 9,3Proof of conceptEPSS 31 %comodo · comodo antivirus29 янв. 2008 г.
- CVE-2012-146345В плане
The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5
СредняяCVSS 4,3Эксплойта нетEPSS 94 %ahnlab · v3 internet security21 мар. 2012 г.
- CVE-2012-142945В плане
The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.
СредняяCVSS 4,3Эксплойта нетEPSS 92 %comodo · comodo antivirus21 мар. 2012 г.
- CVE-2011-512140В плане
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not properly check whether unspecified X.509 certificates ar
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %comodo · comodo internet security25 авг. 2012 г.
- CVE-2010-518540В плане
The Antivirus component in Comodo Internet Security before 5.3.174622.1216 does not check whether X.509 certificates in signed executable fi
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %comodo · comodo internet security25 авг. 2012 г.
- CVE-2011-512340В плане
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in signed executable fi
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %comodo · comodo internet security25 авг. 2012 г.
- CVE-2025-709733Наблюдать
Comodo Internet Security Premium Manifest File cis_update_x64.xml os command injection
ВысокаяCVSS 8,2Эксплойта нетEPSS 4 %comodo · internet security6 июл. 2025 г.
- CVE-2014-963332Наблюдать
The bdisk.sys driver in COMODO Backup before 4.4.1.23 allows remote attackers to gain privileges via a crafted device handle, which triggers
ВысокаяCVSS 7,5Proof of conceptEPSS 8 %comodo · backup3 февр. 2015 г.
- CVE-2025-709632Наблюдать
Comodo Internet Security Premium Manifest File cis_update_x64.xml integrity check
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %comodo · internet security6 июл. 2025 г.
- CVE-2019-1821531Наблюдать
An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %comodo · comodo internet security18 нояб. 2019 г.
- CVE-2019-396931Наблюдать
Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of COM clients.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %comodo · antivirus17 июл. 2019 г.
- CVE-2022-3400831Наблюдать
Comodo Antivirus 12.2.2.8012 has a quarantine flaw that allows privilege escalation.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · antivirus21 июн. 2022 г.
- CVE-2024-724831Наблюдать
Comodo Internet Security Pro Directory Traversal Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · internet security29 июл. 2024 г.
- CVE-2024-725131Наблюдать
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · internet security29 июл. 2024 г.
- CVE-2024-725031Наблюдать
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · internet security29 июл. 2024 г.
- CVE-2024-725231Наблюдать
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · internet security29 июл. 2024 г.
- CVE-2024-724931Наблюдать
Comodo Firewall Link Following Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %comodo · firewall29 июл. 2024 г.
- CVE-2014-787228Наблюдать
Comodo GeekBuddy before 4.18.121 does not restrict access to the VNC server, which allows local users to gain privileges by connecting to th
ВысокаяCVSS 7,2Proof of conceptEPSS 1 %comodo · geekbuddy9 июн. 2015 г.
- CVE-2006-661928Наблюдать
AVG Anti-Virus plus Firewall 7.5.431 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass
ВысокаяCVSS 7,2Proof of conceptEPSS 1 %avg · antivirus plus firewall18 дек. 2006 г.