Zemana develops security software focused on endpoint protection, particularly antilogger and antimalware products that operate at a system level to detect and block malicious activity. Its vulnerability exposure centers on code-injection flaws, resource-management issues, and permission-assignment weaknesses that are characteristic of security tools requiring deep kernel or process-level access. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zemana over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-6440CRITICAL Zemana AntiMalware before 3.0.658 Beta mishandles update logic. | Jan 16, 2019 | 9.8 | 25 | NO | NO |
CVE-2018-15491HIGH A vulnerability in the permission and encryption implementation of Zemana Anti-Logger 1.9.3.527 and prior (fixed in 1.9.3.602) allows an attacker to take control of the whitelistin | Aug 18, 2018 | 7.5 | 25 | NO | NO |
CVE-2022-42045MEDIUM Certain Zemana products are vulnerable to Arbitrary code injection. This affects Watchdog Anti-Malware 4.1.422 and Zemana AntiMalware 3.2.28. | Jul 13, 2023 | 6.7 | 23 | NO | NO |
CVE-2024-2204MEDIUM Zemana AntiLogger v2.74.204.664 is vulnerable to a Denial of Service (DoS) vulnerability by triggering the 0x80002004 and 0x80002010 IOCTL codes of the zam64.sys and zamguard64.sys | Mar 15, 2024 | 5.5 | 19 | NO | NO |
CVE-2024-2180MEDIUM Zemana AntiLogger v2.74.204.664 is vulnerable to a Memory Information Leak vulnerability by triggering the 0x80002020 IOCTL code of the zam64.sys and zamguard64.sys drivers | Mar 15, 2024 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zemana.
Media articles that mention a CVE ID that affects a product developed by Zemana — matched by CVE ID, not by vendor name.