6.1
CVE-2024-3779
- EPSS 0.09%
- Veröffentlicht 16.07.2024 09:15:02
- Zuletzt bearbeitet 21.11.2024 09:30:22
- Quelle security@eset.com
- CVE-Watchlists
- Unerledigt
Denial of Service in ESET products for Windows
Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security product inoperable, provided non-default preconditions were met.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Eset ≫ Internet Security Version < 17.2.7.0
Eset ≫ Smart Security SwEditionpremium Version < 17.2.7.0
Eset ≫ Endpoint Antivirus SwPlatformwindows Version < 11.1.2039.0
Eset ≫ Endpoint Security SwPlatformwindows Version < 11.1.2039.0
Eset ≫ Server Security SwPlatformwindows_server Version < 11.0.12012.0
Eset ≫ Mail Security SwPlatformexchange_server Version <= 11.0.10008.0
Eset ≫ Mail Security Version- SwPlatformdomino
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.256 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
| security@eset.com | 6.1 | 1.8 | 4.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.