Cisco Secure Endpoint是美国Cisco公司的一款终端安全与反病毒防护软件。 Cisco Secure Endpoint 1.1.0版本至8.4.5.30483版本存在缓冲区错误漏洞,该漏洞源于ClamAV的Mach-O文件格式解析器边界检查不当,可能导致越界读取,攻击者可通过提交特制的Mach-O文件利用该漏洞,导致扫描进程终止,造成拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cisco | Cisco Secure Endpoint | 7.0.5 |
affected |
6.2.19 |
affected | ||
7.3.3 |
affected | ||
7.2.13 |
affected | ||
6.1.5 |
affected | ||
6.3.1 |
affected | ||
6.2.5 |
affected | ||
7.3.5 |
affected | ||
| … +154 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Secure Endpoint | 7.0.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-20348 | 7.5 HIGH | ClamAV XAR File Format Processing Memory Corruption Vulnerability |
| CVE-2026-20345 | 7.5 HIGH | ClamAV GPT File Format Processing Memory Corruption Vulnerability |
| CVE-2026-20339 | 7.5 HIGH | ClamAV PESpin File Format Processing Integer Overflow Vulnerability |
| CVE-2026-20346 | 7.5 HIGH | ClamAV PDF File Format Processing Memory Corruption Vulnerability |
| CVE-2026-20338 | 7.5 HIGH | ClamAV ZIP File Format Processing Memory Corruption Vulnerability |
| CVE-2026-20337 | 7.5 HIGH | ClamAV ZIP File Format Processing Memory Corruption Vulnerability |
No comments yet