Malwarefox develops a narrowly scoped antimalware product that, despite limited volume, occupies a niche focused on endpoint security. The vendor's vulnerability patterns center on input-validation and permission-assignment issues that are characteristic of security software operating at the system level, and the disclosures have frequently acquired public exploit tooling. Live severity, exploitation, and product details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Malwarefox over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-6606HIGH An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver | Feb 4, 2018 | 7.8 | 33 | NO | YES |
CVE-2018-6593HIGH An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver | Feb 3, 2018 | 7.8 | 33 | NO | YES |
CVE-2021-31728HIGH Incorrect access control in zam64.sys, zam32.sys in MalwareFox AntiMalware 2.74.0.150 allows a non-privileged process to open a handle to \.\ZemanaAntiMalware, register itself with | May 17, 2021 | 7.8 | 26 | NO | NO |
CVE-2021-31727HIGH Incorrect access control in zam64.sys, zam32.sys in MalwareFox AntiMalware 2.74.0.150 where IOCTL's 0x80002014, 0x80002018 expose unrestricted disk read/write capabilities respecti | May 17, 2021 | 7.8 | 24 | NO | NO |
CVE-2018-5714HIGH In Malwarefox Anti-Malware 2.72.169, the driver file (zam64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not val | Jan 16, 2018 | 7.8 | 23 | NO | NO |
CVE-2018-5713HIGH In Malwarefox Anti-Malware 2.72.169, the driver file (zam64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not val | Jan 16, 2018 | 7.8 | 23 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Malwarefox.
Media articles that mention a CVE ID that affects a product developed by Malwarefox — matched by CVE ID, not by vendor name.