Записи Malwarebytes
30 опубликованных записей вендора malwarebytes.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 3,3 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 10 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation11
- CWE-59 Improper Link Resolution Before File Access ('Link Following')5
- CWE-426 Untrusted Search Path2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-190 Integer Overflow or Wraparound1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEОхват bug bounty
Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.
Все записи
30 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2014-4936Готовый эксплойт | The upgrade functionality in Malwarebytes Anti-Malware (MBAM) consumer before 2.0.3 and Malwarebytes Anti-Exploit (MBAE) consumer 1.04.1.101malwarebytes · malwarebytes anti-exploit · CWE-345 | Критическая9,3 | — | 16,8 % | 16 дек. 2014 г. |
40В плане | CVE-2024-25089Эксплойта нет | Malwarebytes Binisoft Windows Firewall Control before 6.9.9.2 allows remote attackers to execute arbitrary code via gRPC named pipes.malwarebytes · binisoft windows firewall control · CWE-94 | Критическая9,8 | — | 1,8 % | 4 февр. 2024 г. |
38Наблюдать | CVE-2019-6739Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Malwarebytes Antimalware 3.6.1.2711.malwarebytes · antimalware · CWE-78 | Высокая8,8 | — | 9,9 % | 3 июн. 2019 г. |
34Наблюдать | CVE-2022-50971Эксплойта нет | Malwarebytes 4.5 Unquoted Service Path Privilege Escalationmalwarebytes · malwarebytes · CWE-428 | Высокая8,5 | — | 0,2 % | 19 июн. 2026 г. |
31Наблюдать | CVE-2016-10717Эксплойта нет | A vulnerability in the encryption and permission implementation of Malwarebytes Anti-Malware consumer version 2.2.1 and prior (fixed in 3.0.malwarebytes · malwarebytes anti-malware · CWE-254 | Высокая7,8 | — | 1,1 % | 21 мар. 2018 г. |
31Наблюдать | CVE-2020-11507Эксплойта нет | An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner 8.0.3 could cause arbitrary code execution with SYSTEM privileges when a mmalwarebytes · adwcleaner · CWE-426 | Высокая7,8 | — | 0,9 % | 6 апр. 2020 г. |
31Наблюдать | CVE-2019-19929Эксплойта нет | An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with SYSTEM privileges wmalwarebytes · adwcleaner · CWE-426 | Высокая7,8 | — | 0,9 % | 22 дек. 2019 г. |
31Наблюдать | CVE-2023-36631Эксплойта нет | Lack of access control in wfc.exe in Malwarebytes Binisoft Windows Firewall Control 6.9.2.0 allows local unprivileged users to bypass Windowmalwarebytes · binisoft windows firewall control | Высокая7,8 | — | 0,7 % | 26 июн. 2023 г. |
31Наблюдать | CVE-2018-5271Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,5 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2023-28892Эксплойта нет | Malwarebytes AdwCleaner 8.4.0 runs as Administrator and performs an insecure file delete operation on C:\AdwCleaner\Logs\AdwCleaner_Debug.lomalwarebytes · adwcleaner · CWE-59 | Высокая7,8 | — | 0,5 % | 29 мар. 2023 г. |
31Наблюдать | CVE-2018-5279Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,5 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2023-26088Эксплойта нет | In Malwarebytes before 4.5.23, a symbolic link may be used delete any arbitrary file on the system by exploiting the local quarantine systemmalwarebytes · malwarebytes · CWE-59 | Высокая7,8 | — | 0,5 % | 22 мар. 2023 г. |
31Наблюдать | CVE-2022-25150Эксплойта нет | In Malwarebytes Binisoft Windows Firewall Control before 6.8.1.0, programs executed from the Tools tab can be used to escalate privileges.malwarebytes · binisoft windows firewall control · CWE-269 | Высокая7,8 | — | 0,5 % | 14 февр. 2022 г. |
31Наблюдать | CVE-2018-5276Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5275Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5274Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5273Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5277Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5272Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2018-5270Эксплойта нет | In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unsmalwarebytes · malwarebytes · CWE-20 | Высокая7,8 | — | 0,4 % | 8 янв. 2018 г. |
31Наблюдать | CVE-2023-29145Эксплойта нет | The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by executable files, allowimalwarebytes · endpoint detection and response · CWE-640 | Высокая7,8 | — | 0,3 % | 30 июн. 2023 г. |
31Наблюдать | CVE-2024-6260Эксплойта нет | Malwarebytes Antimalware Link Following Local Privilege Escalation Vulnerabilitymalwarebytes · antimalware · CWE-59 | Высокая7,8 | — | 0,3 % | 22 нояб. 2024 г. |
28Наблюдать | CVE-2020-28641Эксплойта нет | In Malwarebytes Free 4.1.0.56, a symbolic link may be used delete an arbitrary file on the system by exploiting the local quarantine system.malwarebytes · endpoint protection · CWE-59 | Высокая7,1 | — | 0,8 % | 22 дек. 2020 г. |
28Наблюдать | CVE-2023-27469Эксплойта нет | Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message in which FullFileNamemalwarebytes · anti-exploit · CWE-59 | Высокая7,1 | — | 0,4 % | 30 июн. 2023 г. |
28Наблюдать | CVE-2020-25533Эксплойта нет | An issue was discovered in Malwarebytes before 4.0 on macOS.malwarebytes · malwarebytes · CWE-362 | Высокая7,0 | — | 0,3 % | 15 янв. 2021 г. |
- CVE-2014-493642В плане
The upgrade functionality in Malwarebytes Anti-Malware (MBAM) consumer before 2.0.3 and Malwarebytes Anti-Exploit (MBAE) consumer 1.04.1.101
КритическаяCVSS 9,3Готовый эксплойтEPSS 17 %malwarebytes · malwarebytes anti-exploit16 дек. 2014 г.
- CVE-2024-2508940В плане
Malwarebytes Binisoft Windows Firewall Control before 6.9.9.2 allows remote attackers to execute arbitrary code via gRPC named pipes.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %malwarebytes · binisoft windows firewall control4 февр. 2024 г.
- CVE-2019-673938Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Malwarebytes Antimalware 3.6.1.2711.
ВысокаяCVSS 8,8Эксплойта нетEPSS 10 %malwarebytes · antimalware3 июн. 2019 г.
- CVE-2022-5097134Наблюдать
Malwarebytes 4.5 Unquoted Service Path Privilege Escalation
ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %malwarebytes · malwarebytes19 июн. 2026 г.
- CVE-2016-1071731Наблюдать
A vulnerability in the encryption and permission implementation of Malwarebytes Anti-Malware consumer version 2.2.1 and prior (fixed in 3.0.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %malwarebytes · malwarebytes anti-malware21 мар. 2018 г.
- CVE-2020-1150731Наблюдать
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner 8.0.3 could cause arbitrary code execution with SYSTEM privileges when a m
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %malwarebytes · adwcleaner6 апр. 2020 г.
- CVE-2019-1992931Наблюдать
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with SYSTEM privileges w
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %malwarebytes · adwcleaner22 дек. 2019 г.
- CVE-2023-3663131Наблюдать
Lack of access control in wfc.exe in Malwarebytes Binisoft Windows Firewall Control 6.9.2.0 allows local unprivileged users to bypass Window
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %malwarebytes · binisoft windows firewall control26 июн. 2023 г.
- CVE-2018-527131Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2023-2889231Наблюдать
Malwarebytes AdwCleaner 8.4.0 runs as Administrator and performs an insecure file delete operation on C:\AdwCleaner\Logs\AdwCleaner_Debug.lo
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · adwcleaner29 мар. 2023 г.
- CVE-2018-527931Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2023-2608831Наблюдать
In Malwarebytes before 4.5.23, a symbolic link may be used delete any arbitrary file on the system by exploiting the local quarantine system
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes22 мар. 2023 г.
- CVE-2022-2515031Наблюдать
In Malwarebytes Binisoft Windows Firewall Control before 6.8.1.0, programs executed from the Tools tab can be used to escalate privileges.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · binisoft windows firewall control14 февр. 2022 г.
- CVE-2018-527631Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527531Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527431Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527331Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527731Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527231Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2018-527031Наблюдать
In Malwarebytes Premium 3.3.1.2183, the driver file (FARFLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · malwarebytes8 янв. 2018 г.
- CVE-2023-2914531Наблюдать
The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by executable files, allowi
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · endpoint detection and response30 июн. 2023 г.
- CVE-2024-626031Наблюдать
Malwarebytes Antimalware Link Following Local Privilege Escalation Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %malwarebytes · antimalware22 нояб. 2024 г.
- CVE-2020-2864128Наблюдать
In Malwarebytes Free 4.1.0.56, a symbolic link may be used delete an arbitrary file on the system by exploiting the local quarantine system.
ВысокаяCVSS 7,1Эксплойта нетEPSS 1 %malwarebytes · endpoint protection22 дек. 2020 г.
- CVE-2023-2746928Наблюдать
Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message in which FullFileName
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %malwarebytes · anti-exploit30 июн. 2023 г.
- CVE-2020-2553328Наблюдать
An issue was discovered in Malwarebytes before 4.0 on macOS.
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %malwarebytes · malwarebytes15 янв. 2021 г.