← Back

Kaspersky Anti Virus

kaspersky_anti-virus

Vendor: Kaspersky Lab • 28 CVEs

CVEs (28)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kaspersky Lab
7Kaspersky Anti Virus
Kaspersky Anti Virus 2009Kaspersky Anti Virus 2010+4 more
Apr 23, 2026
Dec 29, 2009
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); and Internet Security 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); us...Show more
Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); and Internet Security 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); use weak permissions (Everyone:Full Control) for the BASES directory, which allows local users to gain SYSTEM privileges by replacing an executable or DLL with a Trojan horse.Show less
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 23, 2026
Feb 10, 2009
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0 and Anti-Virus 2008 allows local users to gain privileges via an IOCTL 0x80052110 call.
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Jun 5, 2008
N/A· v4
N/A· v3
7.2 HIGH· v2
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 and 7.0 allows local users to gain privileges via an IOCTL 0x800520e8 call.
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Sep 26, 2007
N/A· v4
N/A· v3
2.1 LOW· v2
Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do not properly validate certain parameters to System Service Descriptor Table (SSDT) and Shadow SSDT function handlers, which allows local users to cause a...Show more
Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do not properly validate certain parameters to System Service Descriptor Table (SSDT) and Shadow SSDT function handlers, which allows local users to cause a denial of service (crash) via the (1) NtUserSendInput, (2) LoadLibraryA, (3) NtOpenProcess, (4) NtOpenThread, (5) NtTerminateProcess, (6) NtUserFindWindowEx, and (7) NtUserBuildHwndList kernel SSDT hooks in kylif.sys; the (8) NtDuplicateObject (DuplicateHandle) kernel SSDT hook; and possibly other kernel SSDT hooks. NOTE: the NtCreateSection vector is covered by CVE-2007-5043.1. NOTE: the vendor disputes that the DuplicateHandle vector is a vulnerability in their code, stating that "it is not an error in our code, but an obscure method for manipulating standard Windows routines to circumvent our self-defense mechanisms."Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Apr 6, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Unspecified vulnerability in KLIF (klif.sys) in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows local use...Show more
Unspecified vulnerability in KLIF (klif.sys) in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows local users to gain Ring-0 privileges via unspecified vectors.Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Apr 6, 2007
N/A· v4
N/A· v3
6.6 MEDIUM· v2
Integer overflow in the _NtSetValueKey function in klif.sys in Kaspersky Anti-Virus, Anti-Virus for Workstations, Anti-Virus for File Server 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows...Show more
Integer overflow in the _NtSetValueKey function in klif.sys in Kaspersky Anti-Virus, Anti-Virus for Workstations, Anti-Virus for File Server 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows context-dependent attackers to execute arbitrary code via a large, unsigned "data size argument," which results in a heap overflow.Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Apr 6, 2007
N/A· v4
N/A· v3
9.3 HIGH· v2
The StartUploading function in KL.SysInfo ActiveX control (AxKLSysInfo.dll) in Kaspersky Anti-Virus 6.0 and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to read arbitrary files...Show more
The StartUploading function in KL.SysInfo ActiveX control (AxKLSysInfo.dll) in Kaspersky Anti-Virus 6.0 and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to read arbitrary files by triggering an outbound anonymous FTP session that invokes the PUT command. NOTE: this issue might be related to CVE-2007-1112.Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Apr 6, 2007
N/A· v4
N/A· v3
10.0 HIGH· v2
Kaspersky Anti-Virus 6.0 and Internet Security 6.0 exposes unsafe methods in the (a) AXKLPROD60Lib.KAV60Info (AxKLProd60.dll) and (b) AXKLSYSINFOLib.SysInfo (AxKLSysInfo.dll) ActiveX controls, which allows remote attacke...Show more
Kaspersky Anti-Virus 6.0 and Internet Security 6.0 exposes unsafe methods in the (a) AXKLPROD60Lib.KAV60Info (AxKLProd60.dll) and (b) AXKLSYSINFOLib.SysInfo (AxKLSysInfo.dll) ActiveX controls, which allows remote attackers to "download" or delete arbitrary files via crafted arguments to the (1) DeleteFile, (2) StartBatchUploading, (3) StartStrBatchUploading, or (4) StartUploading methods.Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Internet Security
Apr 23, 2026
Apr 6, 2007
N/A· v4
N/A· v3
10.0 HIGH· v2
Heap-based buffer overflow in the arj.ppl module in the OnDemand Scanner in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 buil...Show more
Heap-based buffer overflow in the arj.ppl module in the OnDemand Scanner in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to execute arbitrary code via crafted ARJ archives.Show less
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 23, 2026
Dec 10, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Kaspersky Anti-Virus for Linux Mail Servers 5.5.10 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EI...Show more
Kaspersky Anti-Virus for Linux Mail Servers 5.5.10 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.Show less
1Kaspersky Lab
4Kaspersky Anti Virus
Kaspersky Anti Virus PersonalKaspersky Anti Virus Personal Pro+1 more
Apr 23, 2026
Oct 20, 2006
N/A· v4
N/A· v3
7.2 HIGH· v2
The NDIS-TDI Hooking Engine, as used in the (1) KLICK (KLICK.SYS) and (2) KLIN (KLIN.SYS) device drivers 2.0.0.281 for in Kaspersky Labs Anti-Virus 6.0.0.303 and other Anti-Virus and Internet Security products, allows lo...Show more
The NDIS-TDI Hooking Engine, as used in the (1) KLICK (KLICK.SYS) and (2) KLIN (KLIN.SYS) device drivers 2.0.0.281 for in Kaspersky Labs Anti-Virus 6.0.0.303 and other Anti-Virus and Internet Security products, allows local users to execute arbitrary code via crafted Irp structure with invalid addresses in the 0x80052110 IOCTL.Show less
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 16, 2026
Mar 9, 2006
N/A· v4
N/A· v3
7.8 HIGH· v2
Kaspersky Antivirus 5.0.5 and 5.5.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via unknown attack vectors.
2F Secure
Kaspersky Lab
3F Secure Anti Virus
Kaspersky Anti VirusKaspersky Anti Virus Personal
Apr 16, 2026
Nov 18, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap-based buffer overflow in Kaspersky Anti-Virus Engine, as used in Kaspersky Personal 5.0.227, Anti-Virus On-Demand Scanner for Linux 5.0.5, and F-Secure Anti-Virus for Linux 4.50 allows remote attackers to execute ar...Show more
Heap-based buffer overflow in Kaspersky Anti-Virus Engine, as used in Kaspersky Personal 5.0.227, Anti-Virus On-Demand Scanner for Linux 5.0.5, and F-Secure Anti-Virus for Linux 4.50 allows remote attackers to execute arbitrary code via a crafted CHM file.Show less
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 16, 2026
Nov 18, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
Unquoted Windows search path vulnerability in Kaspersky Anti-Virus 5.0 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 16, 2026
Oct 30, 2005
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Multiple interpretation error in Kaspersky 5.0.372 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which caus...Show more
Multiple interpretation error in Kaspersky 5.0.372 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a "triple headed" program that contains EXE, EML, and HTML content, aka the "magic byte bug."Show less
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 16, 2026
Oct 14, 2005
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local h...Show more
Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.Show less
1Kaspersky Lab
4Kaspersky Anti Virus
Kaspersky Anti Virus PersonalKaspersky Anti Virus Personal Pro+1 more
Apr 16, 2026
Oct 5, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Heap-based buffer overflow in Kaspersky Antivirus (KAV) 5.0 and Kaspersky Personal Security Suite 1.1 allows remote attackers to execute arbitrary code via a CAB file with large records after the header.
1Kaspersky Lab
1Kaspersky Anti Virus
Apr 16, 2026
Aug 16, 2005
N/A· v4
N/A· v3
3.6 LOW· v2
Kaspersky Anti-Virus for Unix/Linux File Servers 5.0-5 uses world-writable permissions for the (1) log and (2) license directory, which allows local users to delete log files, append to arbitrary files via a symlink atta...Show more
Kaspersky Anti-Virus for Unix/Linux File Servers 5.0-5 uses world-writable permissions for the (1) log and (2) license directory, which allows local users to delete log files, append to arbitrary files via a symlink attack on kavmonitor.log, or delete license keys and prevent keepup2date from properly executing.Show less
1Kaspersky Lab
2Kaspersky Anti Virus
Kaspersky Anti Virus Personal
Apr 16, 2026
Jun 9, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
The klif.sys driver in Kaspersky Labs Anti-Virus 5.0.227, 5.0.228, and 5.0.335 on Windows 2000 allows local users to gain privileges by modifying certain critical code addresses that are later accessed by privileged prog...Show more
The klif.sys driver in Kaspersky Labs Anti-Virus 5.0.227, 5.0.228, and 5.0.335 on Windows 2000 allows local users to gain privileges by modifying certain critical code addresses that are later accessed by privileged programs.Show less
11Archive Zip
BroadcomCa+8 more
23Antivirus Engine
Archive ZipBrightstor Arcserve Backup+20 more
Apr 16, 2026
Feb 9, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero...Show more
Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.Show less