{"record":"ESET evidence record","url":"https://nexalign.io/vendors/eset","vendor":{"slug":"eset","name":"ESET","domain":"eset.com","category":"endpoint-security","categoryLabel":"Endpoint security (EDR and XDR)"},"lastChecked":"2026-07-31T10:18:05.341Z","coverage":{"earliest":"2004-09-01T04:00:00.000Z","latest":"2026-07-31T10:18:05.341Z"},"terms":{"isRanking":false,"isRating":false,"statesSuitability":false,"note":"This is a record of what public sources hold about a named company. It states no ranking, no rating and no suitability verdict, and none may be derived from it. An absent or small record means the public registers publish little under that name; it is not evidence that a product is secure. A larger advisory count generally reflects wider deployment and more scrutiny rather than a weaker product.","licence":"https://nexalign.io/vendors#licence","corrections":"info@nexalign.io"},"totals":{"evidenceItems":64,"kindsOfSource":6,"attributedAdvisories":37,"knownExploited":0,"registerEntriesNotAttributable":8,"practitionerThreads":2,"independentItems":7,"vendorPublishedItems":0,"shareFromSourcesTheVendorDoesNotControl":1},"sources":[{"source":"European Vulnerability Database","operator":"ENISA, European Union","classification":"authoritative","items":29,"latest":"2026-07-24T11:14:51.000Z"},{"source":"CERT-Bund security advisories","operator":"BSI, Federal Republic of Germany","classification":"authoritative","items":15,"latest":"2026-07-16T11:26:40.932Z"},{"source":"Known Exploited Vulnerabilities catalogue","operator":"CISA, United States","classification":"authoritative","items":1,"latest":"2025-08-12T00:00:00.000Z"},{"source":"Engineering discussions","operator":"Hacker News, public threads","classification":"independent","items":8,"latest":"2026-07-15T01:52:59.000Z"},{"source":"Analyst, review and reference sources","operator":"Recognised analysts, review marketplaces and technology press","classification":"independent","items":8,"latest":"2026-07-31T10:18:05.341Z"},{"source":"Practitioner discussions","operator":"Reddit, public threads","classification":"independent","items":3,"latest":"2026-05-07T10:42:11.000Z"}],"advisories":{"shown":6,"total":37,"truncated":true,"fullList":"https://nexalign.io/vendors/eset/advisories","items":[{"id":"CVE-2026-10610","description":"Local privilege escalation potentially allowed an attacker to execute arbitrary code as a privileged user.","severity":"high","cvss":8.5,"knownExploited":false,"date":"2026-07-24T11:14:51.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-48558"]},{"id":"CVE-2026-7483","description":"Local privilege escalation potentially allowed an attacker to write an arbitrary file with fully controlled content as a privileged user.","severity":"high","cvss":8.5,"knownExploited":false,"date":"2026-07-24T09:40:04.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-48551"]},{"id":"WID-SEC-2026-2385","description":"Affected products: ESET Server Security","severity":"low","cvss":4.4,"knownExploited":false,"date":"2026-07-16T11:26:40.932Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2385"]},{"id":"CVE-2026-6424","description":"Use-after-free vulnerability in ESET Linux products potentially allowed an attacker to trigger kernel panic on the system","severity":"medium","cvss":6.7,"knownExploited":false,"date":"2026-07-16T08:28:43.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-44903"]},{"id":"CVE-2026-6423","description":"A local privilege escalation vulnerability in ESET Inspect Connector.","severity":"high","cvss":8.5,"knownExploited":false,"date":"2026-07-16T07:56:20.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-44895"]},{"id":"WID-SEC-2026-0926","description":"Affected products: ESET PROTECT","severity":"medium","cvss":4.3,"knownExploited":false,"date":"2026-03-31T09:54:11.668Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0926"]}]},"practitionerThreads":{"shown":2,"total":2,"truncated":false,"items":[{"title":"ESET Down?","context":"r/sysadmin","url":"https://www.reddit.com/r/sysadmin/comments/1rme0r2/eset_down/","date":"2026-03-06T13:30:26.000Z"},{"title":"ESET recommends Linux if your unsupported Windows 11 PC can't update from 10","context":"Hacker News","url":"https://news.ycombinator.com/item?id=42605704","date":"2025-01-05T22:43:24.000Z"}]},"independentCoverage":{"shown":5,"total":7,"truncated":true,"items":[{"title":"ESET - Wikipedia","host":"en.wikipedia.org","url":"https://en.wikipedia.org/wiki/ESET","date":null},{"title":"ESET Threat Intelligence Reviews & Ratings 2026 | Gartner Peer Insights","host":"gartner.com","url":"https://www.gartner.com/reviews/market/security-threat-intelligence-products-and-services/vendor/eset/product/eset-threat-intelligence","date":null},{"title":"What is your primary use case for ESET Endpoint Security?","host":"peerspot.com","url":"https://www.peerspot.com/questions/what-is-your-primary-use-case-for-eset-endpoint-security","date":null},{"title":"What is your primary use case for ESET Enterprise Inspector? | PeerSpot","host":"peerspot.com","url":"https://www.peerspot.com/questions/what-is-your-primary-use-case-for-eset-enterprise-inspector-2307448","date":null},{"title":"ESET PROTECT Platform Reviews & Ratings 2026 | Gartner Peer Insights","host":"gartner.com","url":"https://www.gartner.com/reviews/product/eset-protect-platform","date":null}]},"vendorPublished":{"shown":0,"total":0,"truncated":false,"items":[]},"openQuestions":["A further 8 register entries mention ESET without naming a product of ESET as affected. They are excluded rather than counted as vulnerabilities.","Pricing, contract terms, notice periods and support commitments are not part of any public register. They come from the vendor and belong in a negotiation record.","Certification status such as ISO 27001, SOC 2 or BSI C5 has to be checked against the current certificate and its stated scope. A valid certificate can still exclude the product being bought."]}