{"record":"Kaspersky evidence record","url":"https://nexalign.io/vendors/kaspersky","vendor":{"slug":"kaspersky","name":"Kaspersky","domain":"kaspersky.com","category":"endpoint-security","categoryLabel":"Endpoint security (EDR and XDR)"},"lastChecked":"2026-07-17T10:19:25.837Z","coverage":{"earliest":"2010-10-08T21:00:00.000Z","latest":"2026-07-17T10:19:25.837Z"},"terms":{"isRanking":false,"isRating":false,"statesSuitability":false,"note":"This is a record of what public sources hold about a named company. It states no ranking, no rating and no suitability verdict, and none may be derived from it. An absent or small record means the public registers publish little under that name; it is not evidence that a product is secure. A larger advisory count generally reflects wider deployment and more scrutiny rather than a weaker product.","licence":"https://nexalign.io/vendors#licence","corrections":"info@nexalign.io"},"totals":{"evidenceItems":53,"kindsOfSource":5,"attributedAdvisories":23,"knownExploited":0,"registerEntriesNotAttributable":3,"practitionerThreads":23,"independentItems":3,"vendorPublishedItems":0,"shareFromSourcesTheVendorDoesNotControl":1},"sources":[{"source":"European Vulnerability Database","operator":"ENISA, European Union","classification":"authoritative","items":25,"latest":"2026-03-27T16:38:20.000Z"},{"source":"CERT-Bund security advisories","operator":"BSI, Federal Republic of Germany","classification":"authoritative","items":1,"latest":"2025-02-07T11:05:00.431Z"},{"source":"Engineering discussions","operator":"Hacker News, public threads","classification":"independent","items":20,"latest":"2026-03-05T01:18:38.000Z"},{"source":"Practitioner discussions","operator":"Reddit, public threads","classification":"independent","items":4,"latest":"2026-05-07T10:42:11.000Z"},{"source":"Analyst, review and reference sources","operator":"Recognised analysts, review marketplaces and technology press","classification":"independent","items":3,"latest":"2026-07-17T10:19:25.837Z"}],"advisories":{"shown":6,"total":23,"truncated":true,"fullList":"https://nexalign.io/vendors/kaspersky/advisories","items":[{"id":"CVE-2025-64984","description":"Kaspersky has fixed a security issue in Kaspersky Endpoint Security for Linux (any version with anti-virus databases prior to 18.11.2025), Kaspersky Industrial CyberSecurity for Linux Nodes…","severity":"medium","cvss":5.1,"knownExploited":false,"date":"2025-11-20T06:53:39.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-198259"]},{"id":"WID-SEC-2025-0293","description":"Affected products: Kaspersky Anti-Virus, Kaspersky Internet Security","severity":"medium","cvss":5.3,"knownExploited":false,"date":"2025-02-07T11:05:00.431Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0293"]},{"id":"CVE-2024-13614","description":"Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Light Agent, Kaspersky Endpoint Security for Windows, Kaspersky Small…","severity":"medium","cvss":5.3,"knownExploited":false,"date":"2025-02-06T16:13:08.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-51693"]},{"id":"CVE-2023-23349","description":"Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recover the auto-filled credentials from a memory dump when the KPM…","severity":"low","cvss":2.2,"knownExploited":false,"date":"2024-03-22T16:15:55.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-27449"]},{"id":"CVE-2019-8271","description":"UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer handler, which can potentially result code execution.","severity":null,"cvss":null,"knownExploited":false,"date":"2019-03-09T00:00:00.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-17669"]},{"id":"CVE-2019-8280","description":"UltraVNC revision 1203 has out-of-bounds access vulnerability in VNC client inside RAW decoder, which can potentially result code execution.","severity":null,"cvss":null,"knownExploited":false,"date":"2019-03-09T00:00:00.000Z","sources":["https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-17678"]}]},"practitionerThreads":{"shown":5,"total":23,"truncated":true,"items":[{"title":"Successor for Kaspersky Endpoint Security","context":"r/cybersecurity","url":"https://www.reddit.com/r/cybersecurity/comments/1t66r3k/successor_for_kaspersky_endpoint_security/","date":"2026-05-07T10:42:11.000Z"},{"title":"Kaspersky recently disclosed PhantomRPC, a privilege escalation technique affecting all Windows versions (tested on Server 2022/2025)","context":"r/sysadmin","url":"https://www.reddit.com/r/sysadmin/comments/1sxa2np/kaspersky_recently_disclosed_phantomrpc_a/","date":"2026-04-27T17:13:45.000Z"},{"title":"Kaspersky recently disclosed PhantomRPC, a privilege escalation technique affecting all Windows versions (tested on Server 2022/2025)","context":"r/cybersecurity","url":"https://www.reddit.com/r/cybersecurity/comments/1sxa29m/kaspersky_recently_disclosed_phantomrpc_a/","date":"2026-04-27T17:13:22.000Z"},{"title":"Kaspersky says Coruna iPhone exploit kit isn't connected NSA-linked operation","context":"Hacker News","url":"https://news.ycombinator.com/item?id=47256237","date":"2026-03-05T01:18:38.000Z"},{"title":"Notorious Malware, Spam Host \"Prospero\" Moves to Kaspersky Lab","context":"Hacker News","url":"https://news.ycombinator.com/item?id=43209878","date":"2025-02-28T20:15:51.000Z"}]},"independentCoverage":{"shown":3,"total":3,"truncated":false,"items":[{"title":"Kaspersky Lab - Wikipedia","host":"en.wikipedia.org","url":"https://en.wikipedia.org/wiki/Kaspersky_Lab","date":null},{"title":"Kaspersky Enterprise Software and Services Reviews","host":"gartner.com","url":"https://www.gartner.com/reviews/vendor/kaspersky","date":null},{"title":"Kaspersky Anti-Virus - Wikipedia","host":"en.wikipedia.org","url":"https://en.wikipedia.org/wiki/Kaspersky_Anti-Virus","date":null}]},"vendorPublished":{"shown":0,"total":0,"truncated":false,"items":[]},"openQuestions":["A further 3 register entries mention Kaspersky without naming a product of Kaspersky as affected. They are excluded rather than counted as vulnerabilities.","Pricing, contract terms, notice periods and support commitments are not part of any public register. They come from the vendor and belong in a negotiation record.","Certification status such as ISO 27001, SOC 2 or BSI C5 has to be checked against the current certificate and its stated scope. A valid certificate can still exclude the product being bought."]}