The OPSWAT Vulnerability Assessment technology supports file based and endpoint application vulnerability assessment. Learn how MetaDefender Kiosk and MetaDefender Access leverages this technology to protect your organization.
We continuously enhance our platform to decrease your organization's security risk and prevent malware attacks. The first table below lists the hashes of vulnerable application installers, IoT software and firmware was added to the OPSWAT database during January 6 - January 13, 2021. The second table lists the new CVEs and application versions for which support was added.
To take advantage of these capabilities, please always update your OPSWAT Vulnerability Engine to the latest version. If you have questions or interest in using the engine to better protect your organization, please contact OPSWAT.
File Based Vulnerabilities
OPSWAT Vulnerability Engine added support to detect the following vulnerable application installers, IoT software and firmware
| HASH | CVES |
|---|---|
| 04ABBF6A25611A4BE6BEDC3181FC35E79EA24786 | CVE-2020-13958 |
| 0AD08640F9FA22F574A711FD8907E3B32DF06739 | CVE-2018-20253, CVE-2018-20252, CVE-2018-20251, CVE-2018-20250, CVE-2015-5663, ... |
| 0B8AD72806E4EF8761C5D6C4325AAC16AAA2BD8F | CVE-2015-7985 |
| 1BB029BC7560BC1D8256C27CD50F48540DA765D2 | CVE-2020-9687, CVE-2020-9686, CVE-2020-9685, CVE-2020-9684, CVE-2020-9683, ... |
| 25EF3B4408B706BB696E4E173796AAB434073706 | CVE-2015-7985 |
| 32AB884234A6C639ADADEEFA7E158E7D5B15EF47 | CVE-2015-7985 |
| 4DB6B6CC4097043FD6666944BFE105A769FA8DEF | CVE-2019-12807, CVE-2018-5196, CVE-2018-10027 |
| 6F95D238B61B20123252DD14C588617211138997 | CVE-2020-9687, CVE-2020-9686, CVE-2020-9685, CVE-2020-9684, CVE-2020-9683, ... |
| 741604E9023EF3B25DC9134F678523D17AE12793 | CVE-2020-9687, CVE-2020-9686, CVE-2020-9685, CVE-2020-9684, CVE-2020-9683, ... |
| 7AF34977CE242F4056BF3AEF747D781E3C3DBF99 | CVE-2019-17093 |
| 9E2F35E0964A13C80BCE7E9D5CE9AB95182893AF | CVE-2015-7985 |
| A1C14BE8CDF0C26798471FE6F3183088B0A33C68 | CVE-2015-7985 |
| AA03EB095F996137C623378E9EF5316098A7F9C9 | CVE-2015-7985 |
| C7520462F5719CBE7C4EFE3F05DF5920658AAEA4 | CVE-2015-7985 |
| ED04B3562A915AB9FF9CCADE896A7FE902C8DD9C | CVE-2015-7985 |
| EDF2B88C1E19F6EAE7BC942E8BE5D0E342938431 | CVE-2020-24421, CVE-2019-7107, CVE-2018-4928, CVE-2018-4927, CVE-2017-11302, ... |
| F4C50E095226C7FE27EB360B3866355F3E21A954 | CVE-2019-7651 |
| 963EF38E87AD0899F672A9396C7D45DC0D89E4F4 | CVE-2020-3990, CVE-2020-3989, CVE-2020-3988, CVE-2020-3987, CVE-2020-3986, ... |
| F0BDF6E56A2DAE73FED9E165D83CA34F858361B6 | CVE-2020-3990, CVE-2020-3989, CVE-2020-3988, CVE-2020-3987, CVE-2020-3986, ... |
| 1449983C0E45651FD0F98D776B646C538F47AB6E | CVE-2017-3898, CVE-2017-3897 |
| 220C63DCA2D709681B5BFA4580814C4F80C5EDE9 | CVE-2018-18913 |
| 26509932326431D75F24DC70DB82D11BD83C7245 | CVE-2018-18913 |
| 280803DFD40081D0D8961643C67580BB8FC93DAF | CVE-2015-7985 |
| 410923B4CFB87A5006B1E8C8DCFDD3C486042E58 | CVE-2018-18913 |
| 4F1A37127098F14F285C37819843C3CCD9F34E85 | CVE-2015-7985 |
| 52370443DB727365F30B2E6D2300033CD52FFDA8 | CVE-2015-7985 |
| 675380FBAF3D286DD0751ED6D1B307FAB8C19723 | CVE-2010-3199 |
| 756456C08EAFC012160FB05A24C230906A25EA18 | CVE-2014-4936, CVE-2014-100039 |
| 96FF2A478AC1399250B98B3740C4C134A2E8374F | CVE-2020-3990, CVE-2020-3989, CVE-2020-3988, CVE-2020-3987, CVE-2020-3986, ... |
| A7A08CB87388F4AE4320C3889DF2C8356D8C79DC | CVE-2010-3199 |
| B7BEA3AD5DE1809A5B1A6CDE558F6DB159AE8624 | CVE-2015-7985 |
| C060611898BD2E95278E0DB9EB2151348EF23959 | CVE-2013-6932, CVE-2013-5351, CVE-2012-5904, CVE-2012-0897, CVE-2011-5233, ... |
| E2115055C02620ECD84A3AE691763937AD907145 | CVE-2018-20253, CVE-2018-20252, CVE-2018-20251, CVE-2018-20250, CVE-2015-5663, ... |
| F6A12516A6C91908AD542ADA9B3ED5B7E6FF1228 | CVE-2019-17093 |
| FBC0D67927C984BAD30FBBF88668667DF5D1A639 | CVE-2020-3990, CVE-2020-3989, CVE-2020-3988, CVE-2020-3987, CVE-2020-3986, ... |
| 46C6109AD9C379F08F4EA7981E530D002C0A6BC2 | CVE-2020-2959, CVE-2020-2958, CVE-2020-2951, CVE-2020-2929, CVE-2020-2914, ... |
| 51D995BBBEDAF7F6065CAF5D77AF282711123768 | CVE-2020-2959, CVE-2020-2958, CVE-2020-2951, CVE-2020-2929, CVE-2020-2914, ... |
| 0318DABB2BB44DE87EC20BB6DC0F32A3DC079142 | CVE-2015-7985 |
| 0DA9598C02D1CD3F00FBDA15F4BF62DAE6CA23DF | CVE-2020-3990, CVE-2020-3989, CVE-2020-3988, CVE-2020-3987, CVE-2020-3986, ... |
| 22EEDAE033168C2BD4A88A1A59F82CED7ED70297 | CVE-2020-24421, CVE-2019-7107 |
| 3188D239E998CC0AB50E79FE25AF60A481514AE5 | CVE-2015-7985 |
| 7F86328AD81EB2750B1A18F783EC27AC2EB764AA | CVE-2017-16420, CVE-2017-16419, CVE-2017-16418, CVE-2017-16417, CVE-2017-16416, ... |
| C80987F5F1686753166FD214566D8162AF1C28EE | CVE-2020-9687, CVE-2020-9686, CVE-2020-9685, CVE-2020-9684, CVE-2020-9683, ... |
| B1E94C55BFE09A4F7ADF6BF71819E879118013CD | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
| EEC8A8AEEC0E3CE08AE4038E18CDDB10AB0055DF | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
| 6E25A67E147AFD2F01487EB4EE44D2F9F7E526AF | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
| F1AB42B3FB6070F00B816732661EE2342AC8F071 | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
| B255DEE63AD3790B54AFC3F3911783EC2C428464 | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
| 8A2DD2DD4983C5412CFB3D360B088A549FD9AD57 | CVE-2020-8857, CVE-2020-8856, CVE-2020-8855, CVE-2020-8854, CVE-2020-8853, ... |
Endpoint Application Vulnerabilities
OPSWAT Vulnerability Engine added support to detect the following application vulnerabilities
| PRODUCT | VENDOR | VERSION | CVE | CVE DETAILS | CVSS SCORE |
|---|---|---|---|---|---|
| System Center Endpoint Protection | Microsoft Corporation | 2012 and prior | CVE-2020-1170 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-1170 | 7.2 |
| System Center Endpoint Protection for Mac | Microsoft Corporation | 2012 and prior | CVE-2020-1170 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-1170 | 7.2 |
| Node.js LTS | Joyent, Inc. | 14.3.999999.999998 and prior | CVE-2020-8172 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8172 | 5.8 |
| Node.js LTS | Joyent, Inc. | 14.3.999999.999998 and prior | CVE-2020-8174 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8174 | 9.3 |
| Node.js LTS | Joyent, Inc. | 14.10.999999.999998 and prior | CVE-2020-8201 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8201 | 5.8 |
| Node.js LTS | Joyent, Inc. | 14.10.999999.999998 and prior | CVE-2020-8251 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8251 | 5.0 |
| Node.js LTS | Joyent, Inc. | 15.2.0.999998 and prior | CVE-2020-8277 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8277 | 5.0 |
| Node.js Current | Joyent, Inc. | 14.3.999999.999998 and prior | CVE-2020-8172 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8172 | 5.8 |
| Node.js Current | Joyent, Inc. | 14.3.999999.999998 and prior | CVE-2020-8174 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8174 | 9.3 |
| Node.js Current | Joyent, Inc. | 14.10.999999.999998 and prior | CVE-2020-8201 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8201 | 5.8 |
| Node.js Current | Joyent, Inc. | 14.10.999999.999998 and prior | CVE-2020-8251 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8251 | 5.0 |
| Node.js Current | Joyent, Inc. | 15.2.0.999998 and prior | CVE-2020-8277 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-8277 | 5.0 |
| Google Chrome | Google Inc. | 86.0.4240.182.999998 and prior | CVE-2020-16009 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-16009 | 6.8 |
| Google Chrome | Google Inc. | 86.0.4240.182.999998 and prior | CVE-2020-16009 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-16009 | 6.8 |
| Google Chrome | Google Inc. | 86.0.4240.182.999998 and prior | CVE-2020-16009 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-16009 | 6.8 |
| com.android.chrome | Google LLC | 86.0.4240.98.999998 and prior | CVE-2020-15995 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-15995 | 6.8 |
| cli | node-js-libs | 6.14.5.999998 and prior | CVE-2020-15095 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-15095 | 1.9 |
| Adobe Flash Player | Adobe Systems Inc. | 32.0.0.207 and prior | CVE-2019-8075 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-8075 | 5.0 |
| Adobe Flash Player | Adobe Systems Inc. | 32.0.0.207 and prior | CVE-2019-8075 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-8075 | 5.0 |
| Adobe Flash Player | Adobe Systems Inc. | 32.0.0.207 and prior | CVE-2019-8075 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-8075 | 5.0 |
| Foxit PhantomPDF | Foxit Software | 8.3.11.999998 and prior | CVE-2019-20816 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-20816 | 5.0 |
| Foxit PhantomPDF | Foxit Software | 9.6.999998 and prior | CVE-2019-20820 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-20820 | 5.0 |
| Foxit Reader | Foxit Software | 9.6.999998 and prior | CVE-2019-20820 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2019-20820 | 5.0 |
| axios | axios | 0.21 and prior | CVE-2020-28168 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2020-28168 | 4.3 |
| Java SE Development Kit | Oracle Corporation | 8.0.1920 and prior | CVE-2018-11212 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-11212 | 4.3 |
| Java | Oracle Corporation | 8.0.1910 and prior | CVE-2018-11212 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-11212 | 4.3 |
| Java | Oracle Corporation | 8.0.1910 and prior | CVE-2018-11212 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-11212 | 4.3 |
| Adobe Acrobat DC Continuous | Adobe Systems Inc. | 19.008.20081 and prior | CVE-2018-16042 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-16042 | 5.0 |
| Adobe Acrobat Reader DC Continuous | Adobe Systems Inc. | 19.008.20081 and prior | CVE-2018-16042 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-16042 | 5.0 |
| Adobe Acrobat DC Continuous | Adobe Systems Inc. | 19.008.20080 and prior | CVE-2018-16042 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-16042 | 5.0 |
| Adobe Acrobat Reader DC Continuous | Adobe Systems Inc. | 19.008.20080 and prior | CVE-2018-16042 | https://metadefender.opswat.com/vulnerabilities#!/CVE-2018-16042 | 5.0 |
