Home/Product/f secure client security
Product

f secure client security

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-49322
all versions
Certain WithSecure products allow a Denial of Service because there is an unpack handler crash that can lead to a scanning engine
7.5HIGH
CVE-2023-49321
all versions
Certain WithSecure products allow a Denial of Service because scanning a crafted file takes a long time, and causes the scanner to
5.3MEDIUM
CVE-2023-43767
all versions
Certain WithSecure products allow Denial of Service via the aepack archive unpack handler. This affects WithSecure Client Security
7.5HIGH
CVE-2023-43766
all versions
Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler. This affects WithSecure Client Se
7.8HIGH
CVE-2023-43765
all versions
Certain WithSecure products allow Denial of Service in the aeelf component. This affects WithSecure Client Security 15, WithSecure
7.5HIGH
CVE-2023-43761
all versions
Certain WithSecure products allow Denial of Service (infinite loop). This affects WithSecure Client Security 15, WithSecure Server
7.5HIGH
CVE-2023-43760
all versions
Certain WithSecure products allow Denial of Service via a fuzzed PE32 file. This affects WithSecure Client Security 15, WithSecure
7.5HIGH
CVE-2021-44750
all versions
An arbitrary code execution vulnerability was found in the F-Secure Support Tool. A standard user can craft a special configuratio
6.4MEDIUM
CVE-2021-33597
all versions
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure pr
3.5LOW
CVE-2019-11644
< 14.10
In the F-Secure installer in F-Secure SAFE for Windows before 17.6, F-Secure Internet Security before 17.6, F-Secure Anti-Virus be
7.8HIGH
CVE-2009-1782
<= 8.0
Multiple F-Secure anti-virus products, including Anti-Virus for Microsoft Exchange 7.10 and earlier; Internet Gatekeeper for Windo
CVE-2008-6085
<= 7.12
Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through
CVE-2008-1412
<= 7.11
Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin