quickheal CVE Vulnerabilities & Metrics

Focus on quickheal vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About quickheal Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with quickheal. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total quickheal CVEs: 13
Earliest CVE date: 12 Dec 2008, 18:30 UTC
Latest CVE date: 23 May 2022, 19:16 UTC

Latest CVE reference: CVE-2022-31467

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 0

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): 0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): 0.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical quickheal CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 5.91

Max CVSS: 9.3

Critical CVEs (≥9): 1

CVSS Range vs. Count

Range Count
0.0-3.9 2
4.0-6.9 7
7.0-8.9 6
9.0-10.0 1

CVSS Distribution Chart

Top 5 Highest CVSS quickheal CVEs

These are the five CVEs with the highest CVSS scores for quickheal, sorted by severity first and recency.

All CVEs for quickheal

CVE-2022-31467 quickheal vulnerability CVSS: 4.4 23 May 2022, 19:16 UTC

A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, leading to execution of arbitrary code, via the installer not restricting the search path for required DLLs and then not verifying the signature of the DLLs it tries to load.

CVE-2022-31466 quickheal vulnerability CVSS: 4.4 23 May 2022, 19:16 UTC

Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attacker to achieve privilege escalation, potentially leading to deletion of system files. This is achieved through exploiting the time between detecting a file as malicious and when the action of quarantining or cleaning is performed, and using the time to replace the malicious file by a symlink.

CVE-2020-27587 quickheal vulnerability CVSS: 2.1 30 Nov 2020, 20:15 UTC

Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password.

CVE-2020-27586 quickheal vulnerability CVSS: 4.3 30 Nov 2020, 20:15 UTC

Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.

CVE-2020-27585 quickheal vulnerability CVSS: 2.1 30 Nov 2020, 20:15 UTC

Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.

CVE-2020-9362 quickheal vulnerability CVSS: 6.8 24 Feb 2020, 16:15 UTC

The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GPFLAG in a ZIP archive. This affects Total Security, Home Security, Total Security Multi-Device, Internet Security, Total Security for Mac, AntiVirus Pro, AntiVirus for Server, and Total Security for Android.

CVE-2018-8090 quickheal vulnerability CVSS: 6.8 25 Jul 2018, 23:29 UTC

Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT32.exe) - Version 10.0.1.38; Quick Heal Internet Security 64 bit 17.00 (QHIS64.exe), (QHISFT64.exe) - Version 10.0.0.37; Quick Heal Internet Security 32 bit 17.00 (QHIS32.exe), (QHISFT32.exe) - Version 10.0.0.37; Quick Heal AntiVirus Pro 64 bit 17.00 (QHAV64.exe), (QHAVFT64.exe) - Version 10.0.0.37; and Quick Heal AntiVirus Pro 32 bit 17.00 (QHAV32.exe), (QHAVFT32.exe) - Version 10.0.0.37 allow DLL Hijacking because of Insecure Library Loading.

CVE-2017-8776 quickheal vulnerability CVSS: 5.0 04 May 2017, 04:59 UTC

Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed attacks against the product.

CVE-2017-8775 quickheal vulnerability CVSS: 7.5 04 May 2017, 04:59 UTC

Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.

CVE-2017-8774 quickheal vulnerability CVSS: 7.5 04 May 2017, 04:59 UTC

Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.

CVE-2017-8773 quickheal vulnerability CVSS: 7.5 04 May 2017, 04:59 UTC

Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to improper validation of dwCompressionSize of Microsoft WIM Header WIMHEADER_V1_PACKED. This vulnerability can be exploited to gain Remote Code Execution as well as Privilege Escalation.

CVE-2015-8285 quickheal vulnerability CVSS: 5.0 20 Apr 2017, 21:59 UTC

The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.

CVE-2017-5005 quickheal vulnerability CVSS: 7.5 02 Jan 2017, 22:59 UTC

Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and AntiVirus Pro 10.1.0.316 and earlier on OS X allows remote attackers to execute arbitrary code via a crafted LC_UNIXTHREAD.cmdsize field in a Mach-O file that is mishandled during a Security Scan (aka Custom Scan) operation.

CVE-2013-6767 quickheal vulnerability CVSS: 7.2 20 Dec 2013, 22:55 UTC

Stack-based buffer overflow in pepoly.dll in Quick Heal AntiVirus Pro 7.0.0.1 allows local users to execute arbitrary code or cause a denial of service (process crash) via a long *.text value in a PE file.

CVE-2009-4556 quickheal vulnerability CVSS: 7.2 04 Jan 2010, 21:30 UTC

Quick Heal AntiVirus Plus 2009 10.00 SP1 and Quick Heal Total Security 2009 10.00 SP1 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs, as demonstrated by replacing quhlpsvc.exe.

CVE-2008-5524 quickheal vulnerability CVSS: 9.3 12 Dec 2008, 18:30 UTC

CAT-QuickHeal 10.00 and possibly 9.50, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.