Записи panda
24 опубликованных записей вендора panda.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 8
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-399 Resource Management Errors3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
24 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2007-3026Эксплойта нет | Integer overflow in Panda Software AdminSecure allows remote attackers to execute arbitrary code via crafted packets with modified length vapanda · adminsecure | Критическая9,3 | — | 9,5 % | 25 июл. 2007 г. |
39Наблюдать | CVE-2008-3155Proof of concept | Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a denipanda · panda activescan · CWE-119 | Критическая9,3 | — | 7,7 % | 11 июл. 2008 г. |
39Наблюдать | CVE-2009-3735Эксплойта нет | The ActiveScan Installer ActiveX control in as2stubie.dll before 1.3.3.0 in PandaActiveScan Installer 2.0 in Panda ActiveScan downloads softpanda · panda activescan · CWE-94 | Критическая9,3 | — | 5,7 % | 11 февр. 2010 г. |
39Наблюдать | CVE-2007-3969Эксплойта нет | Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from panda · panda antivirus | Критическая9,3 | — | 5,7 % | 25 июл. 2007 г. |
38Наблюдать | CVE-2008-3156Proof of concept | The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cpanda · panda activescan · CWE-264 | Критическая9,3 | — | 4,1 % | 11 июл. 2008 г. |
32Наблюдать | CVE-2005-3922Эксплойта нет | Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a craftedpanda · panda activescan | Высокая7,5 | — | 5,6 % | 30 нояб. 2005 г. |
32Наблюдать | CVE-2007-1673Эксплойта нет | unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite looamavis · amavis · CWE-399 | Высокая7,8 | — | 3,2 % | 8 мая 2007 г. |
32Наблюдать | CVE-2007-1670Эксплойта нет | Panda Software Antivirus before 20070402 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direnpanda · panda activescan | Высокая7,8 | — | 3,0 % | 8 мая 2007 г. |
31Наблюдать | CVE-2004-1904Proof of concept | Buffer overflow in ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to execute arbitrary code via the Internacional property fopanda · activescan | Высокая7,5 | — | 4,9 % | 31 дек. 2004 г. |
28Наблюдать | CVE-2008-1471Proof of concept | The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system cpanda · panda antivirus and firewall · CWE-399 | Высокая7,2 | — | 1,1 % | 24 мар. 2008 г. |
28Наблюдать | CVE-2000-0541Эксплойта нет | The Panda Antivirus console on port 2001 allows local users to execute arbitrary commands without authentication via the CMD command.panda · panda antivirus | Высокая7,2 | — | 0,7 % | 17 июн. 2000 г. |
28Наблюдать | CVE-2006-4657Эксплойта нет | Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 stores service executables under the product's installation directory with panda · panda platinum internet security | Высокая7,2 | — | 0,4 % | 8 сент. 2006 г. |
27Наблюдать | CVE-2007-4191Proof of concept | Panda Antivirus 2008 stores service executables under the product's installation directory with weak permissions, which allows local users tpanda · panda antivirus | Средняя6,9 | — | 0,8 % | 7 авг. 2007 г. |
26Наблюдать | CVE-2006-5966Эксплойта нет | Panda ActiveScan 5.53.00, and other versions before 5.54.01, allows remote attackers to (1) reboot the system using the Reinicializar methodpanda · activescan · CWE-399 | Средняя6,4 | — | 1,8 % | 17 нояб. 2006 г. |
21Наблюдать | CVE-2006-5967Эксплойта нет | Race condition in Panda ActiveScan 5.53.00, and other versions before 5.54.01, allows remote attackers to cause memory corruption and executpanda · activescan | Средняя5,1 | — | 2,4 % | 17 нояб. 2006 г. |
21Наблюдать | CVE-2006-4658Эксплойта нет | Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses sequential message numbers in generated URLs that are not filtered if panda · panda platinum internet security | Средняя5,0 | — | 2,1 % | 8 сент. 2006 г. |
21Наблюдать | CVE-2006-4659Эксплойта нет | The Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses predictable URLs for the spam classification of each message, whicpanda · panda platinum internet security | Средняя5,0 | — | 2,1 % | 8 сент. 2006 г. |
21Наблюдать | CVE-2005-3230Эксплойта нет | Multiple interpretation error in unspecified versions of Panda Antivirus allows remote attackers to bypass virus detection via a malicious epanda · activescan | Средняя5,1 | — | 1,7 % | 14 окт. 2005 г. |
21Наблюдать | CVE-2004-1905Эксплойта нет | ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to cause a denial of service (crash) by calling the SetSitesFile function.panda · activescan | Средняя5,0 | — | 1,7 % | 31 дек. 2004 г. |
20Наблюдать | CVE-2005-3380Эксплойта нет | Multiple interpretation error in Panda Titanium 2005 4.02.01 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, panda · titanium 2005 | Средняя5,0 | — | 1,4 % | 30 окт. 2005 г. |
20Наблюдать | CVE-2001-1149Эксплойта нет | Panda Antivirus Platinum before 6.23.00 allows a remore attacker to cause a denial of service (crash) when a user selects an action for a mapanda · panda antivirus platinum | Средняя5,0 | — | 1,3 % | 21 авг. 2001 г. |
18Наблюдать | CVE-2006-4295Proof of concept | Cross-site scripting (XSS) vulnerability in ascan_6.asp in Panda ActiveScan 5.53.00 allows remote attackers to inject arbitrary web script opanda · panda activescan | Средняя4,3 | — | 1,8 % | 22 авг. 2006 г. |
18Наблюдать | CVE-2000-0265Эксплойта нет | Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet.panda · panda security | Средняя4,6 | — | 0,5 % | 17 апр. 2000 г. |
8Наблюдать | CVE-2000-0264Proof of concept | Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly executing a .reg file orpanda · panda security | Низкая2,1 | — | 0,7 % | 17 апр. 2000 г. |
- CVE-2007-302640В плане
Integer overflow in Panda Software AdminSecure allows remote attackers to execute arbitrary code via crafted packets with modified length va
КритическаяCVSS 9,3Эксплойта нетEPSS 9 %panda · adminsecure25 июл. 2007 г.
- CVE-2008-315539Наблюдать
Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a deni
КритическаяCVSS 9,3Proof of conceptEPSS 8 %panda · panda activescan11 июл. 2008 г.
- CVE-2009-373539Наблюдать
The ActiveScan Installer ActiveX control in as2stubie.dll before 1.3.3.0 in PandaActiveScan Installer 2.0 in Panda ActiveScan downloads soft
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %panda · panda activescan11 февр. 2010 г.
- CVE-2007-396939Наблюдать
Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %panda · panda antivirus25 июл. 2007 г.
- CVE-2008-315638Наблюдать
The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary c
КритическаяCVSS 9,3Proof of conceptEPSS 4 %panda · panda activescan11 июл. 2008 г.
- CVE-2005-392232Наблюдать
Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %panda · panda activescan30 нояб. 2005 г.
- CVE-2007-167332Наблюдать
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loo
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %amavis · amavis8 мая 2007 г.
- CVE-2007-167032Наблюдать
Panda Software Antivirus before 20070402 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a diren
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %panda · panda activescan8 мая 2007 г.
- CVE-2004-190431Наблюдать
Buffer overflow in ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to execute arbitrary code via the Internacional property fo
ВысокаяCVSS 7,5Proof of conceptEPSS 5 %panda · activescan31 дек. 2004 г.
- CVE-2008-147128Наблюдать
The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system c
ВысокаяCVSS 7,2Proof of conceptEPSS 1 %panda · panda antivirus and firewall24 мар. 2008 г.
- CVE-2000-054128Наблюдать
The Panda Antivirus console on port 2001 allows local users to execute arbitrary commands without authentication via the CMD command.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %panda · panda antivirus17 июн. 2000 г.
- CVE-2006-465728Наблюдать
Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 stores service executables under the product's installation directory with
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %panda · panda platinum internet security8 сент. 2006 г.
- CVE-2007-419127Наблюдать
Panda Antivirus 2008 stores service executables under the product's installation directory with weak permissions, which allows local users t
СредняяCVSS 6,9Proof of conceptEPSS 1 %panda · panda antivirus7 авг. 2007 г.
- CVE-2006-596626Наблюдать
Panda ActiveScan 5.53.00, and other versions before 5.54.01, allows remote attackers to (1) reboot the system using the Reinicializar method
СредняяCVSS 6,4Эксплойта нетEPSS 2 %panda · activescan17 нояб. 2006 г.
- CVE-2006-596721Наблюдать
Race condition in Panda ActiveScan 5.53.00, and other versions before 5.54.01, allows remote attackers to cause memory corruption and execut
СредняяCVSS 5,1Эксплойта нетEPSS 2 %panda · activescan17 нояб. 2006 г.
- CVE-2006-465821Наблюдать
Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses sequential message numbers in generated URLs that are not filtered if
СредняяCVSS 5,0Эксплойта нетEPSS 2 %panda · panda platinum internet security8 сент. 2006 г.
- CVE-2006-465921Наблюдать
The Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses predictable URLs for the spam classification of each message, whic
СредняяCVSS 5,0Эксплойта нетEPSS 2 %panda · panda platinum internet security8 сент. 2006 г.
- CVE-2005-323021Наблюдать
Multiple interpretation error in unspecified versions of Panda Antivirus allows remote attackers to bypass virus detection via a malicious e
СредняяCVSS 5,1Эксплойта нетEPSS 2 %panda · activescan14 окт. 2005 г.
- CVE-2004-190521Наблюдать
ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to cause a denial of service (crash) by calling the SetSitesFile function.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %panda · activescan31 дек. 2004 г.
- CVE-2005-338020Наблюдать
Multiple interpretation error in Panda Titanium 2005 4.02.01 allows remote attackers to bypass virus scanning via a file such as BAT, HTML,
СредняяCVSS 5,0Эксплойта нетEPSS 1 %panda · titanium 200530 окт. 2005 г.
- CVE-2001-114920Наблюдать
Panda Antivirus Platinum before 6.23.00 allows a remore attacker to cause a denial of service (crash) when a user selects an action for a ma
СредняяCVSS 5,0Эксплойта нетEPSS 1 %panda · panda antivirus platinum21 авг. 2001 г.
- CVE-2006-429518Наблюдать
Cross-site scripting (XSS) vulnerability in ascan_6.asp in Panda ActiveScan 5.53.00 allows remote attackers to inject arbitrary web script o
СредняяCVSS 4,3Proof of conceptEPSS 2 %panda · panda activescan22 авг. 2006 г.
- CVE-2000-026518Наблюдать
Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet.
СредняяCVSS 4,6Эксплойта нетEPSS 0 %panda · panda security17 апр. 2000 г.
- CVE-2000-02648Наблюдать
Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly executing a .reg file or
НизкаяCVSS 2,1Proof of conceptEPSS 1 %panda · panda security17 апр. 2000 г.