Webroot Software's vulnerability profile centers on a narrowly focused portfolio of endpoint security and firewall products, including Spy Sweeper, Desktop Firewall, and My Firewall Plus variants, which serve individual and enterprise user bases. The durable signal from disclosed vulnerabilities reflects the broad and often opaque categorization of security-tool flaws, where detailed weakness attribution is limited; defenders should track this vendor's releases for endpoint protection tier coverage. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Webroot Software over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-1313HIGH The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before invoking help, which allows local users to gain privileges. | Jan 10, 2005 | 7.2 | 23 | NO | NO |
CVE-2004-2676HIGH The Spy Sweeper Enterprise Client (SpySweeperTray.exe) in WebRoot Spy Sweeper before 2.0 does not drop privileges when using the help functionality, which allows local users to gai | Dec 31, 2004 | 7.2 | 23 | NO | NO |
CVE-2006-6960MEDIUM The Compression Sweep feature in WebRoot Spy Sweeper 4.5.9 and earlier does not handle non-ZIP archives, which allows remote attackers to bypass the malware detection via files wit | Jan 29, 2007 | 6.8 | 18 | NO | NO |
CVE-2006-6961MEDIUM WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file's name. | Jan 29, 2007 | 6.8 | 18 | NO | NO |
CVE-2005-3197HIGH Stack-based buffer overflow in PWIWrapper.dll for Webroot Desktop Firewall before 1.3.0build52 allows local users to execute arbitrary code as SYSTEM by sending a crafted DeviceIoC | Oct 14, 2005 | 7.2 | 18 | NO | NO |
CVE-2006-6959MEDIUM WebRoot Spy Sweeper 4.5.9 and earlier allows local users to bypass the "Startup-Shield" security restrictions by modifying certain registry keys. | Jan 29, 2007 | 4.6 | 14 | NO | NO |
CVE-2005-3198MEDIUM Webroot Desktop Firewall before 1.3.0build52 allows local users to disable the firewall, even when password protection is enabled, via certain DeviceIoControl commands. | Oct 14, 2005 | 4.6 | 14 | NO | NO |
Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to | May 18, 2005 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Webroot Software.
Media articles that mention a CVE ID that affects a product developed by Webroot Software — matched by CVE ID, not by vendor name.