CVE Tools

Zonelabs

11 CVEs tracked since 2000. Since Mar 2000, none of them reached CISA KEV.

Zonelabs CVEs per month

Mar 2000 to Jul 2005. Point at a month, or focus the strip and use the arrow keys.
Zonelabs CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2000-0310
2000-04null or fewer
2000-05null or fewer
2000-06null or fewer
2000-0710
2000-08null or fewer
2000-09null or fewer
2000-10null or fewer
2000-11null or fewer
2000-12null or fewer
2001-01null or fewer
2001-02null or fewer
2001-03null or fewer
2001-04null or fewer
2001-05null or fewer
2001-06null or fewer
2001-07null or fewer
2001-08null or fewer
2001-09null or fewer
2001-10null or fewer
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-02null or fewer
2002-03null or fewer
2002-04null or fewer
2002-05null or fewer
2002-06null or fewer
2002-07null or fewer
2002-08null or fewer
2002-09null or fewer
2002-10null or fewer
2002-11null or fewer
2002-12null or fewer
2003-01null or fewer
2003-02null or fewer
2003-03null or fewer
2003-0410
2003-05null or fewer
2003-06null or fewer
2003-07null or fewer
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-12null or fewer
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-04null or fewer
2004-05null or fewer
2004-0610
2004-07null or fewer
2004-08null or fewer
2004-09null or fewer
2004-10null or fewer
2004-11null or fewer
2004-12null or fewer
2005-01null or fewer
2005-0230
2005-03null or fewer
2005-04null or fewer
2005-0520
2005-06null or fewer
2005-0720

Products

The products that kept showing up in Zonelabs's monthly top three, with their CVEs summed over those months.

  1. Zonealarm107 months
  2. Imsecure11 month
  3. Zonealarm Antivirus11 month
  4. Zonealarm Wireless Security11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Zonelabs.

  1. CVE-2004-2713Zone Alarm Pro 1.0 through 5.1 gives full access to %windir%\Internet Logs\* to the EVERYONE group, which allows local users to cause a denial of service by modifying the folder contents or permiss...1.9
  2. CVE-2007-5044ZoneAlarm Pro 7.0.362.000 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) an...6.9
  3. CVE-2007-2467ZoneAlarm Pro 6.5.737.000, 6.1.744.001, and possibly earlier versions and other products, allows local users to cause a denial of service (system crash) by sending malformed data to the vsdatant de...4.9
  4. CVE-2007-2083vsdatant.sys in Check Point Zone Labs ZoneAlarm Pro before 7.0.302.000 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a ...6.9
  5. CVE-2007-0351Microsoft Windows XP and Windows Server 2003 do not properly handle user logoff, which might allow local users to gain the privileges of a previous system user, possibly related to user profile unl...6.2
  6. CVE-2003-1309The DeviceIoControl function in the TrueVector Device Driver (VSDATANT) in ZoneAlarm before 3.7.211, Pro before 4.0.146.029, and Plus before 4.0.146.029 allows local users to gain privileges via ce...10.0
  7. CVE-2006-3540Check Point Zone Labs ZoneAlarm Internet Security Suite 6.5.722.000, 6.1.737.000, and possibly other versions do not properly validate RegSaveKey, RegRestoreKey, and RegDeleteKey function calls, wh...4.9
  8. CVE-2006-1221Untrusted search path vulnerability in the TrueVector service (VSMON.exe) in Zone Labs ZoneAlarm 6.x and Integrity does not search ZoneAlarm's own folders before other folders that are specified in...6.2
  9. CVE-2005-3560Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 through 6.1, and (5) ZoneAlarm 6.0 allow remote attackers to...7.5
  10. CVE-2002-1997ZoneAlarm Pro 3.0 MailSafe allows remote attackers to bypass filtering and possibly execute arbitrary code via email attachments containing a trailing dot after the file extension.7.5
  11. CVE-2001-1548ZoneAlarm 2.1 through 2.6 and ZoneAlarm Pro 2.4 and 2.6 allows local users to bypass filtering via non-standard TCP packets created with non-Windows protocol adapters.2.1
  12. CVE-2002-1911ZoneAlarm Pro 3.0 and 3.1, when configured to block all traffic, allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of SYN packets (SYN flood). NO...5.0
  13. CVE-2005-1693Integer overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Conten...10.0
  14. CVE-2004-1936ZoneAlarm Pro 4.5.538.001 and possibly other versions allows remote attackers to bypass e-mail protection via attachments whose names contain certain non-English characters.7.5
  15. CVE-2004-1517Zone Labs IMsecure and IMsecure Pro before 1.5 allow remote attackers to bypass Active Link Filtering via an instant message containing a URL with hex encoded file extensions.7.5

The record

Peak rank
#41 in Mar 2000
Busiest month shown
Feb 2005, 3 CVEs
Months with a KEV entry
0 since Mar 2000
Monthly snapshots
7 since 2000
Zonelabs's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store