CVE-2009-5125

UnknownEPSS 3.60%

Last modified

CVE-2009-5125 is a vulnerability of currently unknown severity. Comodo Internet Security before 3.9.95478.509 allows remote attackers to bypass malware detection in an RAR archive via an unspecified manipulation of the archive file format.. EPSS estimates a 3.60% chance of exploitation in the next 30 days.

Description

Comodo Internet Security before 3.9.95478.509 allows remote attackers to bypass malware detection in an RAR archive via an unspecified manipulation of the archive file format.

Metrics

EPSS Probability
3.60%

88.0th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
ComodoComodo Internet Security<= 3.8.65951.477
ComodoComodo Internet Security3.0.14.276
ComodoComodo Internet Security3.0.15.277
ComodoComodo Internet Security3.0.16.295
ComodoComodo Internet Security3.0.17.304
ComodoComodo Internet Security3.0.18.309
ComodoComodo Internet Security3.0.19.318
ComodoComodo Internet Security3.0.20.320
ComodoComodo Internet Security3.0.22.349
ComodoComodo Internet Security3.0.23.364
ComodoComodo Internet Security3.0.24.368
ComodoComodo Internet Security3.5.53896.424
ComodoComodo Internet Security3.5.54375.427
ComodoComodo Internet Security3.5.55810.432
ComodoComodo Internet Security3.5.57173.439
ComodoComodo Internet Security3.8.64263.468
ComodoComodo Internet Security3.8.64739.471

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2009-5125?
Comodo Internet Security before 3.9.95478.509 allows remote attackers to bypass malware detection in an RAR archive via an unspecified manipulation of the archive file format.
How severe is CVE-2009-5125?
Severity scoring for CVE-2009-5125 is pending analysis. The EPSS model estimates a 3.60% probability of exploitation in the next 30 days.
How do I fix CVE-2009-5125?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2009-5125?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST