Eset Software is a security vendor with a focused product line centered on endpoint protection and system analysis tools, particularly its NOD32 antivirus and system analyzer offerings. The vendor's vulnerability disclosures recur around code-injection and related code-generation weaknesses, and public exploit code has become available for vulnerabilities affecting this vendor's products. Defenders tracking this vendor should monitor its security advisories for its core endpoint-protection line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eset Software over time
Signals from CVEs in this vendor scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0932HIGH McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via | Jan 27, 2005 | 7.5 | 71 | NO | YES |
CVE-2004-1096HIGH Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both lo | Jan 10, 2005 | 7.5 | 43 | NO | YES |
CVE-2004-0934HIGH Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compres | Jan 27, 2005 | 7.5 | 42 | NO | YES |
CVE-2004-0935HIGH Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, whic | Jan 27, 2005 | 7.5 | 42 | NO | YES |
CVE-2004-0933HIGH Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detect | Jan 27, 2005 | 7.5 | 40 | NO | YES |
CVE-2004-0937HIGH Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with b | Feb 9, 2005 | 7.5 | 37 | NO | YES |
CVE-2004-0936HIGH RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed fil | Jan 27, 2005 | 7.5 | 37 | NO | YES |
CVE-2008-4451HIGH The SysInspector AntiStealth driver (esiasdrv.sys) 3.0.65535.0 in ESET System Analyzer Tool 1.1.1.0 allows local users to execute arbitrary code via a certain METHOD_NEITHER IOCTL | Oct 6, 2008 | 7.2 | 27 | NO | YES |
CVE-2007-2852HIGH Multiple stack-based buffer overflows in ESET NOD32 Antivirus before 2.70.37.0 allow remote attackers to execute arbitrary code during (1) delete/disinfect or (2) rename operations | May 24, 2007 | 9.3 | 25 | NO | NO |
CVE-2006-6676HIGH Integer overflow in the (a) OLE2 and (b) CHM parsers for ESET NOD32 Antivirus before 1.1743 allows remote attackers to execute arbitrary code via a crafted (1) .DOC or (2) .CAB fil | Dec 21, 2006 | 9.3 | 25 | NO | NO |
Signals from CVEs in this vendor scope (18 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eset Software.
Media articles that mention a CVE ID that affects a product developed by Eset Software — matched by CVE ID, not by vendor name.