K7 Antivirus
Products
2- 15 CVEs
- 3 CVEs
Recent CVEs
15| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-17701 | Cri | 0.64 | 9.8 | 0.01 | Dec 15, 2017 | K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025c8 DeviceIoControl request. | ||
| CVE-2017-17700 | Cri | 0.64 | 9.8 | 0.01 | Dec 15, 2017 | K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025a4 DeviceIoControl request. | ||
| CVE-2017-17465 | Cri | 0.64 | 9.8 | 0.01 | Dec 8, 2017 | K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x95002574 DeviceIoControl request. | ||
| CVE-2017-17464 | Cri | 0.64 | 9.8 | 0.01 | Dec 8, 2017 | K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x95002570 DeviceIoControl request. | ||
| CVE-2019-25269 | Hig | 0.51 | 7.8 | 0.00 | Feb 5, 2026 | Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service configurations. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges by placing executable files in specific directory… | ||
| CVE-2017-16554 | Hig | 0.51 | 7.8 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | ||
| CVE-2017-16552 | Hig | 0.51 | 7.8 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | ||
| CVE-2017-16550 | Hig | 0.51 | 7.8 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | ||
| CVE-2017-16549 | Hig | 0.51 | 7.8 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | ||
| CVE-2017-16557 | Hig | 0.46 | 7.0 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | ||
| CVE-2017-16555 | Hig | 0.46 | 7.0 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | ||
| CVE-2017-16553 | Hig | 0.46 | 7.0 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | ||
| CVE-2017-16551 | Hig | 0.46 | 7.0 | 0.00 | Jan 16, 2018 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | ||
| CVE-2017-16556 | Med | 0.36 | 5.5 | 0.00 | Jan 16, 2018 | In K7 Antivirus Premium before 15.1.0.53, user-controlled input can be used to allow local users to write to arbitrary memory locations. | ||
| CVE-2008-5533 | 0.00 | — | 0.03 | Dec 12, 2008 | K7AntiVirus 7.10.541 and possibly 7.10.454, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a… |
- risk 0.64cvss 9.8epss 0.01
K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025c8 DeviceIoControl request.
- risk 0.64cvss 9.8epss 0.01
K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025a4 DeviceIoControl request.
- risk 0.64cvss 9.8epss 0.01
K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x95002574 DeviceIoControl request.
- risk 0.64cvss 9.8epss 0.01
K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x95002570 DeviceIoControl request.
- risk 0.51cvss 7.8epss 0.00
Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service configurations. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges by placing executable files in specific directory…
- risk 0.51cvss 7.8epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.
- risk 0.46cvss 7.0epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
- risk 0.46cvss 7.0epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
- risk 0.46cvss 7.0epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
- risk 0.46cvss 7.0epss 0.00
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
- risk 0.36cvss 5.5epss 0.00
In K7 Antivirus Premium before 15.1.0.53, user-controlled input can be used to allow local users to write to arbitrary memory locations.
- CVE-2008-5533Dec 12, 2008risk 0.00cvss —epss 0.03
K7AntiVirus 7.10.541 and possibly 7.10.454, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a…