📦

webshield

Vendor: kingsoft

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 225 Total Indexed
Avg. EPSS 2.34% Exploit Prob.
Latest CVE CVE-2010-2031 May 24

Security Vulnerability Index

Page 1 / 23
7.2 CVSS
CVE-2010-2031
Exploit Found

KAVSafe.sys 2010.4.14.609 and earlier, as used in Kingsoft Webshield 3.5.1.2 and earlier, allows local users to overwrite arbitrary kernel memory via a crafted request to IOCTL 0x830020d4 on the KAVSafe device.

EPSS: 0.12%
10.0 CVSS
CVE-2000-0437
Exploit Found

Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands.

EPSS: 7.19%
5.0 CVSS

The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.

EPSS: 0.63%
7.5 CVSS

Buffer overflow in WebShield SMTP 4.5.44 allows remote attackers to execute arbitrary commands via a long configuration parameter to the WebShield remote management service.

EPSS: 1.42%