Internet Security

Vendor:

First CVE: Jan 6, 2017 · Active for 9 years

14
Total CVEs
More Total CVEs than 91% of tracked products
3.5
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 24% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Internet Security over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 6, 2017
9 years ago
Most Recent CVE
Apr 1, 2022
1,576 days ago

CVE Severity & Scoring

Internet Security14 CVEs
All CVEs352,708 CVEs
MediumHighCritical
Attack Vector
Local6 (42.9%)
Network8 (57.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (64.3%)
Unknown0 (0.0%)
Required5 (35.7%)
Privileges Required
Low6 (42.9%)
High0 (0.0%)
None8 (57.1%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially al
Apr 1, 20229.832NONO
In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthori
Aug 25, 20179.829NONO
A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security. A local user could cause Window
Apr 1, 20225.521NONO
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the we
Nov 26, 20196.121NONO
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the we
Nov 26, 20196.520NONO
KIS for macOS in some use cases was vulnerable to AV bypass that potentially allowed an attacker to disable anti-virus protection.
Apr 1, 20215.519NONO
In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted.
Aug 25, 20177.519NONO
A local denial of service vulnerability exists in window broadcast message handling functionality of Kaspersky Anti-Virus software. Sending certain unhandled window messages, an at
Jan 6, 20175.519NONO
A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky Internet Security KL1 driver. A specially crafted IOCTL signal can cause an access violati
Jan 6, 20175.519NONO
A denial of service vulnerability exists in the syscall filtering functionality of Kaspersky Internet Security KLIF driver. A specially crafted native api call can cause a access v
Jan 6, 20175.519NONO

Exploit Exposure

Signals from CVEs in this product scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (14 CVEs).

Media Mentions

Signals from CVEs in this product scope (14 CVEs).

Top CNAs Publishing CVEs For Internet Security

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
16.0.0.61415.50.6%00
16.0.035.50.5%00
11.12.4.162228.71.2%00