CVE-2021-33974 describes a set of buffer overflow vulnerabilities impacting multiple Qihoo 360 products, including 360 Safeguard, 360 Total Security, and 360 Chrome. With a CVSS score of 8.8 (High), these vulnerabilities allow remote arbitrary code execution simply by opening a malicious link in the affected browsers. The combined remote and local vulnerabilities could enable persistent control of a target system, bypassing antivirus detection. While patched by the vendor, there is no public exploit code, active exploitation, or significant community discussion reported.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.8.0.1060CPE matchmatch criteria | cpe:2.3:a:360:total_security:10.8.0.1060:*:*:*:*:*:*:* | ||
10.8.0.1213CPE matchmatch criteria | cpe:2.3:a:360:total_security:10.8.0.1213:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.