Home/Product/k7computing total security
Product

k7computing total security

82 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-69875
all versions
A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of
7.8HIGH
CVE-2023-53973
all versions
Zillya Total Security 3.0.2367.0 contains a privilege escalation vulnerability that allows low-privileged users to copy files to u
8.4HIGH
CVE-2025-7073
< 27.0.47.241
A local privilege escalation vulnerability in Bitdefender Total Security versions prior to 27.0.47.241 allows low-privileged atta
7.8HIGH
CVE-2024-6871
all versions
G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local at
7.8HIGH
CVE-2024-30377
< 25.5.18.333
G DATA Total Security Scan Server Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attacke
7.8HIGH
CVE-2024-1868
< 25.5.17.355
G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escala
7.8HIGH
CVE-2024-1867
< 25.5.17.355
G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escala
7.8HIGH
CVE-2023-49570
< 27.0.25.115
A vulnerability has been identified in Bitdefender Total Security HTTPS scanning functionality where the software trusts a certifi
7.4HIGH
CVE-2023-6058
< 27.0.25.115
A vulnerability has been identified in Bitdefender Safepay's handling of HTTPS connections. The issue arises when the product bloc
6.8MEDIUM
CVE-2023-6057
< 27.0.25.115
A vulnerability has been discovered in Bitdefender Total Security HTTPS scanning functionality that results in the improper trust
7.4HIGH
CVE-2023-6056
< 27.0.25.115
A vulnerability has been discovered in Bitdefender Total Security HTTPS scanning functionality that results in the improper trust
7.4HIGH
CVE-2023-6055
< 27.0.25.115
A vulnerability has been identified in Bitdefender Total Security HTTPS scanning functionality where the software fails to properl
7.4HIGH
CVE-2023-49567
< 27.0.25.115
A vulnerability has been identified in the Bitdefender Total Security HTTPS scanning functionality where the product incorrectly c
6.8MEDIUM
CVE-2023-42126
all versions
G DATA Total Security GDBackupSvc Service Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local
7.8HIGH
CVE-2023-27347
< 25.5.13.26
G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escala
7.8HIGH
CVE-2023-6154
all versions
A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender A
7.8HIGH
CVE-2022-0357
< 26.0.10.45
Unquoted Search Path or Element vulnerability in the Vulnerability Scan component of Bitdefender Total Security, Bitdefender Inter
6.7MEDIUM
CVE-2021-33971
all versions
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Total Security (http://www.360totalsecurity.co
7.8HIGH
CVE-2021-33974
all versions
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Chrome (https://browser.360.cn/ee/) is affecte
8.8HIGH
CVE-2022-31467
< 12.1.1.27
A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve
7.9HIGH
CVE-2022-31466
< 12.1.1.27
Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achi
7.9HIGH
CVE-2022-27534
< 12.03.2022
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had
9.8CRITICAL
CVE-2021-27223
< 2021-06
A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky
5.5MEDIUM
CVE-2021-4199
< 26.0.3.29
Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdef
7.8HIGH
CVE-2021-4198
< 26.0.3.29
A NULL Pointer Dereference vulnerability in the messaging_ipc.dll component as used in Bitdefender Total Security, Internet Securi
6.1MEDIUM
CVE-2020-8107
< 24.0.26.136
A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with prod
8.2HIGH
CVE-2021-3579
< 7.2.1.65
Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender
7.8HIGH
CVE-2021-3576
< 25.0.26
Execution with Unnecessary Privileges vulnerability in Bitdefender Endpoint Security Tools, Total Security allows a local attacker
7.8HIGH
CVE-2020-15732
< 25.0.7.29
Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Security allows
6.5MEDIUM
CVE-2018-9333
< 16.0.0001
K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local).
7.8HIGH
CVE-2018-9332
< 16.0.0001
K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Incorrect Access Control. The impact is: gain privileges (loca
7.8HIGH
CVE-2018-8726
< 16.0.0001
K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local).
7.8HIGH
CVE-2018-8725
< 16.0.0001
K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local)
7.8HIGH
CVE-2018-8724
< 16.0.0001
K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: gain privileges (local)
7.8HIGH
CVE-2018-8044
< 16.0.0001
K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: Local Process Execution
7.8HIGH
CVE-2018-11246
< 16.0.0001
K7TSMngr.exe in K7Computing K7AntiVirus Premium 15.1.0.53 has a Memory Leak.
7.5HIGH
CVE-2018-11010
< 16.0.0001
A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
7.8HIGH
CVE-2018-11009
< 16.0.0001
A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
7.8HIGH
CVE-2018-11008
< 16.0.0001
An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
5.5MEDIUM
CVE-2018-11007
< 16.0.0001
A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
5.5MEDIUM
CVE-2018-11006
< 16.0.0001
An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
5.5MEDIUM
CVE-2018-11005
< 16.0.0001
A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
5.5MEDIUM
CVE-2020-27587
< 19.00
Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a b
6.7MEDIUM
CVE-2020-27586
< 19.00
Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.
5.9MEDIUM
CVE-2020-27585
< 19.00
Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute
4.4MEDIUM
CVE-2020-9362
all versions
The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GPFLAG in a ZIP archive. This affects
7.8HIGH
CVE-2019-15689
all versions
Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020
6.7MEDIUM
CVE-2019-15688
<= 2020
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Sec
6.1MEDIUM
CVE-2019-15687
<= 2020
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Sec
6.5MEDIUM
CVE-2019-15686
<= 2020
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Sec
4.3MEDIUM
CVE-2019-15685
<= 2020
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Sec
4.3MEDIUM
CVE-2016-10899
< 3.4.1
The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability.
5.3MEDIUM
CVE-2016-10898
< 3.4.1
The total-security plugin before 3.4.1 for WordPress has XSS.
6.1MEDIUM
CVE-2019-14242
< 23.0.24.120
An issue was discovered in Bitdefender products for Windows (Bitdefender Endpoint Security Tool versions prior to 6.6.8.115; and B
6.7MEDIUM
CVE-2019-8286
<= 2019
Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 2019 could po
4.3MEDIUM
CVE-2019-9742
< 2019-02-22
gdwfpcd.sys in G Data Total Security before 2019-02-22 allows an attacker to bypass ACLs because Interpreted Device Characteristic
7.5HIGH
CVE-2018-8090
all versions
Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (Q
7.8HIGH
CVE-2018-10018
all versions
The GDASPAMLib.AntiSpam ActiveX control ASK\GDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlack
8.8HIGH
CVE-2018-6183
all versions
BitDefender Total Security 2018 allows local users to gain privileges or cause a denial of service by impersonating all the pipes
7.8HIGH
CVE-2017-17429
< 15.1.0324
In K7 Antivirus Premium before 15.1.0.53, user-controlled input to the K7Sentry device is not sufficiently authenticated: a local
5.5MEDIUM
CVE-2017-16557
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory i
7.0HIGH
CVE-2017-16556
< 15.1.0324
In K7 Antivirus Premium before 15.1.0.53, user-controlled input can be used to allow local users to write to arbitrary memory loca
5.5MEDIUM
CVE-2017-16555
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory i
7.0HIGH
CVE-2017-16554
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges,
7.8HIGH
CVE-2017-16553
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory i
7.0HIGH
CVE-2017-16552
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges,
7.8HIGH
CVE-2017-16551
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory i
7.0HIGH
CVE-2017-16550
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges,
7.8HIGH
CVE-2017-16549
< 15.1.0324
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges,
7.8HIGH
CVE-2017-18019
< 15.1.0.305
In K7 Total Security before 15.1.0.305, user-controlled input to the K7Sentry device is not sufficiently sanitized: the user-contr
7.1HIGH
CVE-2017-10950
all versions
This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Bitdefender Total Security 21.0
7.0HIGH
CVE-2017-8776
<= 10.1.0.316
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approx
7.5HIGH
CVE-2017-8775
<= 10.1.0.316
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnera
9.8CRITICAL
CVE-2017-8774
<= 10.1.0.316
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnera
9.8CRITICAL
CVE-2017-8773
<= 10.1.0.316
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnera
9.8CRITICAL
CVE-2015-8285
all versions
The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.
7.5HIGH
CVE-2017-6186
<= 12.0
Code injection vulnerability in Bitdefender Total Security 12.0 (and earlier), Internet Security 12.0 (and earlier), and Antivirus
6.7MEDIUM
CVE-2016-4329
all versions
A local denial of service vulnerability exists in window broadcast message handling functionality of Kaspersky Anti-Virus software
5.5MEDIUM
CVE-2016-4306
all versions
Multiple information leaks exist in various IOCTL handlers of the Kaspersky Internet Security KLDISK driver. Specially crafted IOC
5.5MEDIUM
CVE-2017-5005
<= 10.1.0.316
Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and Ant
9.8CRITICAL
CVE-2014-9643
<= 14.2.0.252
K7Sentry.sys in K7 Computing Ultimate Security, Anti-Virus Plus, and Total Security before 14.2.0.253 allows local users to write
CVE-2007-5775
all versions
Unspecified vulnerability in BitDefender allows attackers to execute arbitrary code via unspecified vectors, aka EEYEB-20071024.
9.8CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin