CNNVD-202507-1622 Information

CNNVD ID

CNNVD-202507-1622

CVE-2025-5028

  • CNNVD Published: 2025-07-11

Description (Chinese)

ESET NOD32 Antivirus等都是ESET公司的产品。ESET NOD32 Antivirus是一款杀毒软件。ESET Internet Security是一款带防病毒功能的高级杀毒软件。ESET Smart Security Premium是一款包含数据加密、防病毒、防盗和密码管理等功能的网络安全软件。 ESET多款产品存在安全漏洞,该漏洞源于安装文件可被滥用删除任意文件。以下产品及版本受到影响:ESET NOD32 Antivirus、ESET Internet Security、ESET Smart Security Premium、ESET Security Ultimate 18.1.13.0及更早版本、ESET Endpoint Antivirus for Windows、ESET Endpoint Security for Windows 12.0.2049.0、11.1.2059.0及更早版本、ESET Small Business Security ESET Safe Server 18.1.13.0及更早版本。

Description (English)

ESET NOD32 Antivirus and others are products of ESET. ESET NOD32 Antivirus is a poison-killing software. ESET Internet Security is an advanced antivirus-resistant software. ESET Smart Security Premium is a network security software that includes data encryption, anti-virus, anti-piracy and password management functions. There is a safety gap in the ESET multi-products, which stems from the fact that installed documents can be misused to remove any document. The following products and versions have been affected: ESET NOD32 Antivirus, ESET Internet Security Premium, ESET Smart Security Ultimate 18.1.1.3 and earlier, ESET Endpoint Antivirus for Windows 12.2049.0, 11.1.2059.0 and earlier, ESET Small Business Security ESET Safe Server 18.1.1.3 and earlier.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

eSigna

Published

2025-07-11

Last Modified

2026-02-24

References

https://support.eset.com/en/ca8838-arbitrary-file-deletion-vulnerability-in-eset-product-installers-on-windows-fixed https://vigilance.fr/vulnerability/ESET-NOD32-Antivirus-file-deletion-via-instaler-47795

Patch

https://support.eset.com/en/ca8838-arbitrary-file-deletion-vulnerability-in-eset-product-installers-on-windows-fixed

Share on: