VYPR
Vendor

Quickheal

Products
11
CVEs
35
Across products
56
Status
Private

Products

11

Recent CVEs

35
View all 35 CVEs →
  • CVE-2017-8775CriMay 4, 2017
    risk 0.64cvss 9.8epss 0.01

    Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.

  • CVE-2017-8774CriMay 4, 2017
    risk 0.64cvss 9.8epss 0.01

    Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.

  • CVE-2017-8773CriMay 4, 2017
    risk 0.64cvss 9.8epss 0.02

    Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to improper validation of dwCompressionSize of Microsoft WIM Header WIMHEADER_V1_PACKED. This…

  • CVE-2017-5005CriJan 2, 2017
    risk 0.64cvss 9.8epss 0.09

    Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and AntiVirus Pro 10.1.0.316 and earlier on OS X allows remote attackers to execute arbitrary code via a crafted LC_UNIXTHREAD.cmdsize field in a Mach-O…

  • CVE-2024-48292HigNov 18, 2024
    risk 0.57cvss 8.8epss 0.00

    An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows authenticated attackers to escalate privileges.

  • CVE-2015-8285HigApr 20, 2017
    risk 0.52cvss 7.5epss 0.05

    The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.

  • CVE-2025-69875HigFeb 3, 2026
    risk 0.51cvss 7.8epss 0.00

    A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling allow a low-privileged local user to restore quarantined files into protected system directories.…

  • CVE-2022-31467HigMay 23, 2022
    risk 0.51cvss 7.9epss 0.00

    A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, leading to execution of arbitrary code, via the installer not restricting the search path for required DLLs and then not…

  • CVE-2022-31466HigMay 23, 2022
    risk 0.51cvss 7.9epss 0.00

    Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, potentially leading to deletion of system files. This is achieved through exploiting the time between detecting a file as…

  • CVE-2020-9362HigFeb 24, 2020
    risk 0.51cvss 7.8epss 0.02

    The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GPFLAG in a ZIP archive. This affects Total Security, Home Security, Total Security Multi-Device, Internet Security, Total Security for Mac, AntiVirus Pro, AntiVirus for Server, and…

  • CVE-2018-8090HigJul 25, 2018
    risk 0.51cvss 7.8epss 0.01

    Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT32.exe) - Version 10.0.1.38; Quick Heal Internet Security 64 bit 17.00 (QHIS64.exe), (QHISFT64.exe) - Version 10.0.0.37; Quick…

  • CVE-2017-8776HigMay 4, 2017
    risk 0.49cvss 7.5epss 0.01

    Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed…

  • CVE-2020-27587MedNov 30, 2020
    risk 0.44cvss 6.7epss 0.00

    Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password.

  • CVE-2024-48293MedNov 18, 2024
    risk 0.42cvss 6.5epss 0.00

    Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level privileges to arbitrarily modify antivirus settings.

  • CVE-2020-27586MedNov 30, 2020
    risk 0.38cvss 5.9epss 0.01

    Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.

  • CVE-2020-27585MedNov 30, 2020
    risk 0.29cvss 4.4epss 0.00

    Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.

  • CVE-2012-1463Mar 21, 2012
    risk 0.08cvss —epss 0.94

    The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning…

  • CVE-2012-1462Mar 21, 2012
    risk 0.08cvss —epss 0.98

    The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin…

  • CVE-2012-1460Mar 21, 2012
    risk 0.08cvss —epss 0.94

    The Gzip file parser in Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, and VBA32 3.12.14.2 allows remote attackers to bypass malware…

  • CVE-2012-1446Mar 21, 2012
    risk 0.08cvss —epss 1.00

    The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Norman Antivirus 6.06.12, eSafe 7.0.17.0, Kaspersky Anti-Virus 7.0.0.125, McAfee Gateway (formerly Webwasher)…