CVE-2018-7289
Last modified
CVE-2018-7289 is a vulnerability of currently unknown severity. An issue was discovered in armadito-windows-driver/src/communication.c in Armadito 0.12.7.2. Malware with filenames containing pure UTF-16 characters can bypass detection. EPSS estimates a 1.82% chance of exploitation in the next 30 days.
Description
An issue was discovered in armadito-windows-driver/src/communication.c in Armadito 0.12.7.2. Malware with filenames containing pure UTF-16 characters can bypass detection. The user-mode service will fail to open the file for scanning after the conversion is done from Unicode to ANSI. This happens because characters that cannot be converted from Unicode are replaced with '?' characters.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Teclib-Edition | Armadito Antivirus | 0.12.7.2 |
References
- https://github.com/armadito/armadito-windows-driver/issues/5Third Party Advisory
- https://www.exploit-db.com/exploits/44169/Exploit, Third Party Advisory, VDB Entry
- https://github.com/armadito/armadito-windows-driver/issues/5Third Party Advisory
- https://www.exploit-db.com/exploits/44169/Exploit, Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-7289?
How severe is CVE-2018-7289?
How do I fix CVE-2018-7289?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-7281CactusVPN 5.3.6 for macOS contains a root privilege escalati…
- CVE-2018-7282The username parameter of the TITool PrintMonitor solution d…9.8
- CVE-2018-7284A Buffer Overflow issue was discovered in Asterisk through 1…
- CVE-2018-7285A NULL pointer access issue was discovered in Asterisk 15.x …
- CVE-2018-7286An issue was discovered in Asterisk through 13.19.1, 14.x th…
- CVE-2018-7287An issue was discovered in res_http_websocket.c in Asterisk …
- CVE-2018-7290Cross Site Scripting (XSS) exists in Tiki before 12.13, 15.6…
- CVE-2018-7295ffxivlauncher.exe in Square Enix Final Fantasy XIV 4.21 and …
- CVE-2018-7296Directory Traversal / Arbitrary File Read in User.getLanguag…
- CVE-2018-7297Remote Code Execution in the TCL script interpreter in eQ-3 …
- CVE-2018-7298In /usr/local/etc/config/addons/mh/loopupd.sh on eQ-3 AG Hom…
- CVE-2018-7299Remote Code Execution in the addon installation process in e…
Are you affected by CVE-2018-7289?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
