VendorsPandapanda_activescanall versions
Vulnerabilities

Panda Panda Activescan

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2008-3155
Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the Update method.
Published 2008-07-11 · Modified
9.31 PoCEPSS 0.077
CVE-2009-3735
The ActiveScan Installer ActiveX control in as2stubie.dll before 1.3.3.0 in PandaActiveScan Installer 2.0 in Panda ActiveScan downloads software in an as2guiie.cab archive located at an arbitrary URL, and does not verify the archive's digital signature before installation, which allows remote attackers to execute arbitrary code via a URL argument to an unspecified method.
Published 2010-02-11 · Modified
9.3EPSS 0.057
CVE-2008-3156
The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Update method.
Published 2008-07-11 · Modified
9.31 PoCEPSS 0.041
CVE-2007-1670
Panda Software Antivirus before 20070402 allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
Published 2007-05-09 · Modified
7.8EPSS 0.030
CVE-2005-3922
Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted ZOO archive.
Published 2005-11-30 · Modified
7.5EPSS 0.056
CVE-2006-4295
Cross-site scripting (XSS) vulnerability in ascan_6.asp in Panda ActiveScan 5.53.00 allows remote attackers to inject arbitrary web script or HTML via the email parameter.
Published 2006-08-23 · Modified
4.31 PoCEPSS 0.018