Vulnerabilities (CVE)

Filtered by vendor Gdata-software Subscribe
Filtered by product Total Security
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-9742 1 Gdata-software 1 Total Security 2024-02-04 5.0 MEDIUM 7.5 HIGH
gdwfpcd.sys in G Data Total Security before 2019-02-22 allows an attacker to bypass ACLs because Interpreted Device Characteristics lacks FILE_DEVICE_SECURE_OPEN and therefore files and directories "inside" the \\.\gdwfpcd device are not properly protected, leading to unintended impersonation or object creation.
CVE-2018-10018 1 Gdata-software 1 Total Security 2024-02-04 6.8 MEDIUM 8.8 HIGH
The GDASPAMLib.AntiSpam ActiveX control ASK\GDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlackListed argument.