VYPR

Panda Internet Security

by Pandasecurity

CVEs (3)

  • CVE-2008-1471Mar 24, 2008
    risk 0.03cvss epss 0.01

    The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or kernel panic), overwrite memory, or execute arbitrary code via a crafted IOCTL request that triggers an out-of-bounds write of…

  • CVE-2009-4215Dec 7, 2009
    risk 0.00cvss epss 0.00

    Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs.

  • CVE-2006-4659Sep 9, 2006
    risk 0.00cvss epss 0.02

    The Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses predictable URLs for the spam classification of each message, which allows remote attackers to cause Panda to classify arbitrary messages as spam via a web page that contains IMG tags with the predictable…