Lucene search

K

Webroot Security Vulnerabilities

cve
cve

CVE-2023-7241

Privilege Escalation in WRSA.EXE in Webroot Antivirus 8.0.1X- 9.0.35.12 on Windows64 bit and 32 bit allows malicious software to abuse WRSA.EXE to delete arbitrary and protected...

7.9CVSS

7AI Score

0.0004EPSS

2024-05-01 05:15 PM
25
cve
cve

CVE-2023-29820

An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and...

5.5CVSS

5AI Score

0.0004EPSS

2023-05-12 11:15 AM
22
cve
cve

CVE-2010-5183

Race condition in Webroot Internet Security Essentials 6.1.0.145 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes....

6.9AI Score

0.0004EPSS

2022-10-03 04:21 PM
20
cve
cve

CVE-2023-29818

An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via the default allowlist feature being stored as...

5.5CVSS

5.3AI Score

0.0004EPSS

2023-05-12 11:15 AM
13
cve
cve

CVE-2023-29819

An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via a crafted...

5.5CVSS

5.2AI Score

0.0004EPSS

2023-05-12 11:15 AM
14
cve
cve

CVE-2021-40425

An out-of-bounds read vulnerability exists in the IOCTL GetProcessCommand and B_03 of Webroot Secure Anywhere 21.4. A specially-crafted executable can lead to denial of service. An attacker can issue an ioctl to trigger this vulnerability. An out-of-bounds read vulnerability exists in the IOCTL...

6.5CVSS

6.2AI Score

0.0004EPSS

2022-04-14 08:15 PM
36
cve
cve

CVE-2021-40424

An out-of-bounds read vulnerability exists in the IOCTL GetProcessCommand and B_03 of Webroot Secure Anywhere 21.4. A specially-crafted executable can lead to denial of service. An attacker can issue an ioctl to trigger this vulnerability. An out-of-bounds read vulnerability exists in the IOCTL...

6.5CVSS

6.2AI Score

0.0004EPSS

2022-04-14 08:15 PM
24
cve
cve

CVE-2020-5755

Webroot endpoint agents prior to version v9.0.28.48 did not protect the "%PROGRAMDATA%\WrData\PKG" directory against renaming. This could allow attackers to trigger a crash or wait upon Webroot service restart to rewrite and hijack dlls in this directory for privilege...

7.8CVSS

7.6AI Score

0.001EPSS

2020-06-15 08:15 PM
18
cve
cve

CVE-2020-5754

Webroot endpoint agents prior to version v9.0.28.48 allows remote attackers to trigger a type confusion vulnerability over its listening TCP port, resulting in crashing or reading memory contents of the Webroot endpoint...

9.1CVSS

9AI Score

0.016EPSS

2020-06-15 08:15 PM
31
cve
cve

CVE-2018-4012

An exploitable buffer overflow vulnerability exists in the HTTP header-parsing function of the Webroot BrightCloud SDK. The function bc_http_read_header incorrectly handles overlong headers, leading to arbitrary code execution. An unauthenticated attacker could impersonate a remote BrightCloud...

9CVSS

8.4AI Score

0.003EPSS

2019-01-03 11:00 PM
21
cve
cve

CVE-2018-4015

An exploitable vulnerability exists in the HTTP client functionality of the Webroot BrightCloud SDK. The configuration of the HTTP client does not enforce a secure connection by default, resulting in a failure to validate TLS certificates. An attacker could impersonate a remote BrightCloud server.....

8.1CVSS

7.9AI Score

0.002EPSS

2018-12-18 02:29 PM
30
cve
cve

CVE-2018-16962

Webroot SecureAnywhere before 9.0.8.34 on macOS mishandles access to the driver by a process that lacks root...

7.8CVSS

7.4AI Score

0.0005EPSS

2018-09-12 08:29 PM
439
cve
cve

CVE-2014-5740

The Security - Free (aka com.webroot.security) application 3.6.0.6610 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted...

6AI Score

0.0005EPSS

2014-09-09 10:55 AM
22
cve
cve

CVE-2014-5741

The Security - Complete (aka com.webroot.security.complete) application 3.6.0.6610 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted...

6AI Score

0.0005EPSS

2014-09-09 10:55 AM
15
cve
cve

CVE-2006-6960

The Compression Sweep feature in WebRoot Spy Sweeper 4.5.9 and earlier does not handle non-ZIP archives, which allows remote attackers to bypass the malware detection via files with (1) RAR, (2) GZ, (3) TAR, (4) CAB, or (5) ACE...

6.8AI Score

0.013EPSS

2007-01-29 04:28 PM
16
cve
cve

CVE-2006-6959

WebRoot Spy Sweeper 4.5.9 and earlier allows local users to bypass the "Startup-Shield" security restrictions by modifying certain registry...

6.4AI Score

0.0004EPSS

2007-01-29 04:28 PM
28
cve
cve

CVE-2006-6961

WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file's...

6.7AI Score

0.013EPSS

2007-01-29 04:28 PM
26
cve
cve

CVE-2004-2676

The Spy Sweeper Enterprise Client (SpySweeperTray.exe) in WebRoot Spy Sweeper before 2.0 does not drop privileges when using the help functionality, which allows local users to gain...

6.6AI Score

0.0004EPSS

2007-01-29 04:00 PM
22
cve
cve

CVE-2005-3197

Stack-based buffer overflow in PWIWrapper.dll for Webroot Desktop Firewall before 1.3.0build52 allows local users to execute arbitrary code as SYSTEM by sending a crafted DeviceIoControl command, then removing an allowed program from the firewall...

8AI Score

0.001EPSS

2005-10-14 10:02 AM
16
cve
cve

CVE-2005-3198

Webroot Desktop Firewall before 1.3.0build52 allows local users to disable the firewall, even when password protection is enabled, via certain DeviceIoControl...

6.8AI Score

0.001EPSS

2005-10-14 10:02 AM
25
cve
cve

CVE-2005-0515

Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to corrupt arbitrary files by saving log...

6.9AI Score

0.0004EPSS

2005-05-18 04:00 AM
28
cve
cve

CVE-2004-1313

The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before invoking help, which allows local users to gain...

7.1AI Score

0.0004EPSS

2005-01-10 05:00 AM
22