cve/2019/CVE-2019-8286.md

22 lines
1.1 KiB
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2019-8286](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-8286)
![](https://img.shields.io/static/v1?label=Product&message=Kaspersky%20Anti-Virus%2C%20Kaspersky%20Internet%20Security%2C%20Kaspersky%20Total%20Security&color=blue)
2025-09-29 21:09:30 +02:00
![](https://img.shields.io/static/v1?label=Version&message=up%20to%202019%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Information%20Disclosure&color=brightgreen)
2024-05-26 14:27:05 +02:00
### Description
Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 2019 could potentially disclose unique Product ID by forcing victim to visit a specially crafted webpage (for example, via clicking phishing link). Vulnerability has CVSS v3.0 base score 2.6
### POC
#### Reference
- https://support.kaspersky.com/general/vulnerability.aspx?el=12430#110719
#### Github
2025-09-29 21:09:30 +02:00
- https://github.com/189569400/Digital-Privacy
- https://github.com/bo453/test
2024-06-07 04:52:01 +00:00
- https://github.com/ffffffff0x/Digital-Privacy
2025-09-29 21:09:30 +02:00
- https://github.com/orgTestCodacy11KRepos110MB/repo-2250-Digital-Privacy
- https://github.com/threej-in/online-privacy
2024-05-26 14:27:05 +02:00