← Back

F Secure

f-secure

120 CVEs • 64 products

Products (64)

Click to collapse
Toggle
Atlant
atlant
Safe
safe
Anti Virus
anti-virus
Radar
radar
Safe Anywhere
safe_anywhere
Xfence
xfence
Business Suite
business_suite
Countercept
countercept
Elements
elements
Total
total

CVEs (120)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1F Secure
8Atlant
Cloud Protection For SalesforceElements Collaboration Protection+5 more
Jun 2, 2026
Aug 5, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be trigge...Show more
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker.Show less
1F Secure
7Atlant
Cloud Protection For SalesforceElements Collaboration Protection+4 more
Nov 21, 2024
Jul 22, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning engine.
1F Secure
7Atlant
Cloud Protection For SalesforceElements Collaboration Protection+4 more
Nov 21, 2024
Jul 22, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning engine.
1F Secure
1Elements Endpoint Protection
Nov 21, 2024
Jul 21, 2022
N/A· v4
6.7 MEDIUM· v3
N/A· v2
This vulnerability allows local user to delete arbitrary file in the system and bypassing security protection which can be abused for local privilege escalation on affected F-Secure & WithSecure windows endpoint products...Show more
This vulnerability allows local user to delete arbitrary file in the system and bypassing security protection which can be abused for local privilege escalation on affected F-Secure & WithSecure windows endpoint products. An attacker must have code execution rights on the victim machine prior to successful exploitation.Show less
1F Secure
6Atlant
Cloud Protection For SalesforceElements Collaboration Protection+3 more
Nov 21, 2024
Jul 14, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remot...Show more
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.Show less
1F Secure
7Atlant
Cloud Protection For SalesforceElements Collaboration Protection+4 more
Nov 21, 2024
May 25, 2022
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotel...Show more
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker.Show less
2F Secure
Withsecure
5Atlant
Cloud Protection For SalesforceElements Collaboration Protection+2 more
Nov 21, 2024
May 23, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and heap buffer overflow which eventually c...Show more
Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and heap buffer overflow which eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker.Show less
1F Secure
1Safe
Nov 21, 2024
May 12, 2022
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.open functionality in SAFE Browser which could lead address bar spoofing attacks.
1F Secure
1Safe
Nov 21, 2024
May 12, 2022
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not correct if navigation fails in a loop.
1F Secure
1Atlant
Nov 21, 2024
Apr 25, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the fsicapd component used in certain F-Secure products while scanning larger packages/fuzzed files consume too much memory eventually can...Show more
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the fsicapd component used in certain F-Secure products while scanning larger packages/fuzzed files consume too much memory eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker.Show less
1F Secure
1Safe
Nov 21, 2024
Apr 15, 2022
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not correct if navigation fails.
1F Secure
1Safe
Nov 21, 2024
Apr 15, 2022
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the browser did not show full URL, such as port number.
1F Secure
1Safe
Nov 21, 2024
Apr 15, 2022
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
An Address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted malicious webpage/URL, user may be tricked for a short period of time (until the page loads) to th...Show more
An Address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted malicious webpage/URL, user may be tricked for a short period of time (until the page loads) to think content may be coming from a valid domain, while the content comes from the attacker controlled site.Show less
1F Secure
1Safe
Nov 21, 2024
Mar 25, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website attached with USSD code in JavaScript or iFrame can trigger dialer application from F-Secure browser which can be exploited by...Show more
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website attached with USSD code in JavaScript or iFrame can trigger dialer application from F-Secure browser which can be exploited by an attacker to send unwanted USSD messages or perform unwanted calls. In most modern Android OS, dialer application will require user interaction, however, some older Android OS may not need user interaction.Show less
1F Secure
5Client Security
CounterceptElements+2 more
Nov 21, 2024
Mar 10, 2022
N/A· v4
7.3 HIGH· v3
8.5 HIGH· v2
An arbitrary code execution vulnerability was found in the F-Secure Support Tool. A standard user can craft a special configuration file, which when run by administrator can execute any commands.
1F Secure
1Safe
Nov 21, 2024
Mar 6, 2022
N/A· v4
9.6 CRITICAL· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser protection was discovered improper URL handling can be triggered to cause universal cross-site scripting through browsing protection in a SAFE web browser. User interaction...Show more
A vulnerability affecting F-Secure SAFE browser protection was discovered improper URL handling can be triggered to cause universal cross-site scripting through browsing protection in a SAFE web browser. User interaction is required prior to exploitation. A successful exploitation may lead to arbitrary code execution.Show less
1F Secure
1Safe
Nov 21, 2024
Mar 6, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure SAFE browser was discovered whereby browsers loads images automatically this vulnerability can be exploited remotely by an attacker to execute the JavaScript can be used to trigger univ...Show more
A vulnerability affecting F-Secure SAFE browser was discovered whereby browsers loads images automatically this vulnerability can be exploited remotely by an attacker to execute the JavaScript can be used to trigger universal cross-site scripting through the browser. User interaction is required prior to exploitation, such as entering a malicious website to trigger the vulnerability.Show less
1F Secure
5Atlant
Elements Endpoint ProtectionInternet Gatekeeper+2 more
Nov 21, 2024
Mar 1, 2022
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely...Show more
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine.Show less
1F Secure
6Atlant
Elements Endpoint Detection And ResponseElements Endpoint Protection+3 more
Nov 21, 2024
Feb 9, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely b...Show more
A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.Show less
1F Secure
6Atlant
Elements Endpoint Detection And ResponseElements Endpoint Protection+3 more
Nov 21, 2024
Dec 22, 2021
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack wil...Show more
A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.Show less