Kaspersky Lab Kaspersky Internet Security vulnerabilities

10 known vulnerabilities affecting kaspersky_lab/kaspersky_internet_security.

Total CVEs
10
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH2MEDIUM4LOW1

Vulnerabilities

Page 1 of 1
CVE-2009-4452MEDIUMCVSS 6.8PoCv7.0.1.3252009-12-29
CVE-2009-4452 [MEDIUM] CWE-264 CVE-2009-4452: Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.3 Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); and Internet Security 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); use weak permissions (Everyone:Full Control) for the BASES directory, which allows local users to gain SYSTEM privileges by replacing a
nvd
CVE-2008-1518HIGHCVSS 7.2v6.0v7.02008-06-05
CVE-2008-1518 [HIGH] CWE-119 CVE-2008-1518: Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 and 7.0 allows local users to gain privileges via an IOCTL 0x800520e8 call.
nvd
CVE-2007-5086LOWCVSS 2.1v7.0_build1252007-09-26
CVE-2007-5086 [LOW] CVE-2007-5086: Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do not properly validate certain para Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do not properly validate certain parameters to System Service Descriptor Table (SSDT) and Shadow SSDT function handlers, which allows local users to cause a denial of service (crash) via the (1) NtUserSendInput, (2) LoadLibraryA, (3) NtOpenProcess, (4) NtOpenThread, (5) NtTerminateProcess, (6) NtUser
nvd
CVE-2007-5043MEDIUMCVSS 4.4v7.0.0.1252007-09-24
CVE-2007-5043 [MEDIUM] CWE-20 CVE-2007-5043: Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters to System Servic Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to (1) cause a denial of service (crash) and possibly gain privileges via the NtCreateSection kernel SSDT hook or (2) cause a denial of service (avp.exe service outage) via the NtLoadD
nvd
CVE-2007-1112CRITICALCVSS 10.0v6.02007-04-06
CVE-2007-1112 [CRITICAL] CVE-2007-1112: Kaspersky Anti-Virus 6.0 and Internet Security 6.0 exposes unsafe methods in the (a) AXKLPROD60Lib.K Kaspersky Anti-Virus 6.0 and Internet Security 6.0 exposes unsafe methods in the (a) AXKLPROD60Lib.KAV60Info (AxKLProd60.dll) and (b) AXKLSYSINFOLib.SysInfo (AxKLSysInfo.dll) ActiveX controls, which allows remote attackers to "download" or delete arbitrary files via crafted arguments to the (1) DeleteFile, (2) StartBatchUploading, (3) StartStrBatchUploading
nvd
CVE-2007-0445CRITICALCVSS 10.0≤ 6.02007-04-06
CVE-2007-0445 [CRITICAL] CVE-2007-0445: Heap-based buffer overflow in the arj.ppl module in the OnDemand Scanner in Kaspersky Anti-Virus, An Heap-based buffer overflow in the arj.ppl module in the OnDemand Scanner in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to execute arbitrary code via crafted ARJ archives.
nvd
CVE-2007-1879CRITICALCVSS 9.3≤ 6.0.1.4112007-04-06
CVE-2007-1879 [CRITICAL] CVE-2007-1879: The StartUploading function in KL.SysInfo ActiveX control (AxKLSysInfo.dll) in Kaspersky Anti-Virus The StartUploading function in KL.SysInfo ActiveX control (AxKLSysInfo.dll) in Kaspersky Anti-Virus 6.0 and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to read arbitrary files by triggering an outbound anonymous FTP session that invokes the PUT command. NOTE: this issue might be related to CVE-2007-1112.
nvd
CVE-2007-1881MEDIUMCVSS 6.8PoC≤ 6.0.1.4112007-04-06
CVE-2007-1881 [MEDIUM] CVE-2007-1881: Unspecified vulnerability in KLIF (klif.sys) in Kaspersky Anti-Virus, Anti-Virus for Workstations, a Unspecified vulnerability in KLIF (klif.sys) in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows local users to gain Ring-0 privileges via unspecified vectors.
nvd
CVE-2007-1880MEDIUMCVSS 6.6≤ 6.0.1.4112007-04-06
CVE-2007-1880 [MEDIUM] CVE-2007-1880: Integer overflow in the _NtSetValueKey function in klif.sys in Kaspersky Anti-Virus, Anti-Virus for Integer overflow in the _NtSetValueKey function in klif.sys in Kaspersky Anti-Virus, Anti-Virus for Workstations, Anti-Virus for File Server 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows context-dependent attackers to execute arbitrary code via a large, unsigned "data size argument," which results in a heap overflow.
nvd
CVE-2006-4926HIGHCVSS 7.2PoCv6.02006-10-20
CVE-2006-4926 [HIGH] CVE-2006-4926: The NDIS-TDI Hooking Engine, as used in the (1) KLICK (KLICK.SYS) and (2) KLIN (KLIN.SYS) device dri The NDIS-TDI Hooking Engine, as used in the (1) KLICK (KLICK.SYS) and (2) KLIN (KLIN.SYS) device drivers 2.0.0.281 for in Kaspersky Labs Anti-Virus 6.0.0.303 and other Anti-Virus and Internet Security products, allows local users to execute arbitrary code via crafted Irp structure with invalid addresses in the 0x80052110 IOCTL.
nvd