Total Security
Vendor:
First CVE: Jan 2, 2017 · Active for 9 years
14
Total CVEs
More Total CVEs than 91% of tracked products
2.8
Avg CVEs / Year
Higher CVE frequency than 75% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 63% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Total Security over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 2, 2017
9 years ago
Most Recent CVE
Feb 3, 2026
171 days ago
CVE Severity & Scoring
Total Security14 CVEs
21%
50%
29%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local7 (50.0%)
Network7 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (85.7%)
High2 (14.3%)
Unknown0 (0.0%)
User Interaction
None11 (78.6%)
Unknown0 (0.0%)
Required3 (21.4%)
Privileges Required
Low3 (21.4%)
High2 (14.3%)
None9 (64.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-8775CRITICAL Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed | May 4, 2017 | 9.8 | 31 | NO | NO |
CVE-2017-8774CRITICAL Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed | May 4, 2017 | 9.8 | 31 | NO | NO |
CVE-2017-8773CRITICAL Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to | May 4, 2017 | 9.8 | 31 | NO | NO |
CVE-2015-8285HIGH The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service. | Apr 20, 2017 | 7.5 | 30 | NO | YES |
CVE-2017-5005CRITICAL Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and AntiVirus Pro 10.1.0.316 and earlier on OS X allows r | Jan 2, 2017 | 9.8 | 28 | NO | NO |
CVE-2020-9362HIGH The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GPFLAG in a ZIP archive. This affects Total Security, Home Security, Total Security Mul | Feb 24, 2020 | 7.8 | 25 | NO | NO |
CVE-2018-8090HIGH Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT32.exe) - Version 10.0.1.38; Qu | Jul 25, 2018 | 7.8 | 25 | NO | NO |
CVE-2017-8776HIGH Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation t | May 4, 2017 | 7.5 | 25 | NO | NO |
CVE-2025-69875HIGH A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling al | Feb 3, 2026 | 7.8 | 24 | NO | NO |
CVE-2022-31467HIGH A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, leading to execution of arb | May 23, 2022 | 7.3 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
7.1% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Total Security
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 23.0.0 | 1 | 7.8 | 0.1% | 0 | 0 |
| 2019-11 | 1 | 7.8 | 1.5% | 0 | 0 |
| 17.00 | 1 | 7.8 | 1.2% | 0 | 0 |
| 16.00 | 1 | 7.5 | 5.5% | 0 | 1 |