Elements Endpoint Protection
Vendor:
First CVE: Aug 5, 2021 · Active for 4 years
29
Total CVEs
More Total CVEs than 96% of tracked products
9.7
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Elements Endpoint Protection over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 5, 2021
4 years ago
Most Recent CVE
Nov 27, 2023
972 days ago
CVE Severity & Scoring
Elements Endpoint Protection29 CVEs
45%
55%
All CVEs352,719 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local7 (24.1%)
Network22 (75.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low29 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None20 (69.0%)
Unknown0 (0.0%)
Required9 (31.0%)
Privileges Required
Low2 (6.9%)
High1 (3.4%)
None26 (89.7%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (29 CVEs).
29 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-38166HIGH In F-Secure Endpoint Protection for Windows and macOS before channel with Capricorn database 2022-11-22_07, the aerdl.dll unpacker handler crashes. This can lead to a scanning engi | Nov 25, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-28887HIGH Multiple Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl.dll unpacker handler function crashes. This can lead to a possible | Oct 12, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-28874HIGH Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and | May 23, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-28882HIGH A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventuall | Aug 23, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-28879HIGH A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning en | Jul 22, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-28878HIGH A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning | Jul 22, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-28876HIGH A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning en | Jul 14, 2022 | 7.5 | 24 | NO | NO |
CVE-2023-43761HIGH Certain WithSecure products allow Denial of Service (infinite loop). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security | Sep 22, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-43760HIGH Certain WithSecure products allow Denial of Service via a fuzzed PE32 file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server S | Sep 22, 2023 | 7.5 | 23 | NO | NO |
CVE-2022-28881HIGH A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads | Aug 10, 2022 | 7.5 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (29 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (29 CVEs).
Media Mentions
Signals from CVEs in this product scope (29 CVEs).
Top CNAs Publishing CVEs For Elements Endpoint Protection
Top CWEs
Versions
No cataloged versions.