Avira Antivirus vulnerabilities
3 known vulnerabilities affecting avira/antivirus.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2016-10402P3HIGHCVSS 7.8≤ 8.3.36.592017-07-27
CVE-2016-10402 [HIGH] CWE-119 CVE-2016-10402: Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM
Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.
nvd
CVE-2020-12254P4HIGHCVSS 7.8fixed in 5.0.2003.18212020-04-26
CVE-2020-12254 [HIGH] CWE-59 CVE-2020-12254: Avira Antivirus before 5.0.2003.1821 on Windows allows privilege escalation or a denial of service v
Avira Antivirus before 5.0.2003.1821 on Windows allows privilege escalation or a denial of service via abuse of a symlink.
nvd
CVE-2023-1900P4MEDIUMCVSS 5.5fixed in 1.0.2303.6332023-04-19
CVE-2023-1900 [MEDIUM] CWE-190 CVE-2023-1900: A vulnerability within the Avira network protection feature allowed an attacker with local execution
A vulnerability within the Avira network protection feature allowed an attacker with local execution rights to cause an overflow. This could corrupt the data on the heap and lead to a denial-of-service situation.
Issue was fixed with Endpointprotection.exe version 1.0.2303.633
nvd