Eset Spol S R.O Eset Internet Security vulnerabilities

7 known vulnerabilities affecting eset_spol_s_r.o/eset_internet_security.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH6MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2024-11859HIGHCVSS 8.4≤ 18.0.12.02025-04-07
CVE-2024-11859 [HIGH] CWE-427 CVE-2024-11859: DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileg DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and execute its code.
cvelistv5nvd
CVE-2024-7400HIGHCVSS 8.5≤ 12502024-09-27
CVE-2024-7400 [HIGH] CWE-1386 CVE-2024-7400: The vulnerability potentially allowed an attacker to misuse ESET’s file operations during the remova The vulnerability potentially allowed an attacker to misuse ESET’s file operations during the removal of a detected file on the Windows operating system to delete files without having proper permissions to do so.
cvelistv5nvd
CVE-2024-2003HIGHCVSS 7.3fixed in 16102024-06-21
CVE-2024-2003 [HIGH] CWE-269 CVE-2024-2003: Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation from quarantine.
cvelistv5nvd
CVE-2024-0353HIGHCVSS 7.8≤ 16.2.15.02024-02-15
CVE-2024-0353 [HIGH] CWE-269 CVE-2024-0353: Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file opera Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permission.
cvelistv5nvd
CVE-2023-7043MEDIUMCVSS 5.5≥ 16.1.14.0, ≤ 16.2.15.02024-01-31
CVE-2023-7043 [MEDIUM] CWE-428 CVE-2023-7043: Unquoted service path in ESET products allows to drop a prepared program to a specific location an Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with the NT AUTHORITY\NetworkService permissions.
cvelistv5nvd
CVE-2021-37851HIGHCVSS 7.8≥ 11.2, < 15.1.12.02022-05-11
CVE-2021-37851 [HIGH] CWE-280 CVE-2021-37851: Local privilege escalation in Windows products of ESET allows user who is logged into the system to Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the installer to run malicious code with higher privileges. This issue affects: ESET, spol. s r.o. ESET NOD32 Antivirus 11.2 versions prior to 15.1.12.0. ESET, spol. s r.o. ESET Internet Security 11.2 versions prior to 15.1.12.0
cvelistv5nvd
CVE-2022-27167HIGHCVSS 7.1≥ 11.2, < 15.1.12.02022-05-10
CVE-2022-27167 [HIGH] CWE-280 CVE-2022-27167: Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to expl Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to exploit "Repair" and "Uninstall" features what may lead to arbitrary file deletion. This issue affects: ESET, spol. s r.o. ESET NOD32 Antivirus 11.2 versions prior to 15.1.12.0. ESET, spol. s r.o. ESET Internet Security 11.2 versions prior to 15.1.12.0. ESE
cvelistv5nvd