Information Disclosure in Kaspersky Products
CVE-2019-8286
4.3MEDIUM
Key Information:
- Vendor
- Kaspersky
- Vendor
- CVE Published:
- 18 July 2019
Summary
A vulnerability in Kaspersky Anti-Virus, Kaspersky Internet Security, and Kaspersky Total Security could allow for information disclosure of unique Product IDs. This occurs when a user is coerced into visiting a malicious or specially crafted webpage, potentially through phishing tactics. This underscores the importance of user awareness and robust security measures to protect sensitive data from exploitation.
Affected Version(s)
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security up to 2019
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved