What is the ESET CNA?
ESET is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 32 CVE records since 2021.
How many CVEs has ESET published?
ESET has published 32 CVE records, including 20 in the last two years.
What is ESET's CVE data quality grade?
RadicalNotion.AI grades ESET's CVE data quality as A, with an overall completeness score of 98.5%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (93.8%) information.
What products does ESET publish CVEs for?
ESET most frequently publishes CVEs for ESET Internet Security, ESET NOD32 Antivirus, ESET Smart Security Premium, ESET Mail Security for Microsoft Exchange Server, ESET Security for Microsoft SharePoint Server.
Which vendors does ESET cover?
ESET publishes CVEs across 15 distinct vendors, most often ESET, ESET, spol. s r.o., Kingsoft, ESET, spol. s.r.o, microsoft.
Is ESET actively publishing CVEs?
ESET is currently active, based on 20 CVEs in the last two years.
What is the average severity of ESET's CVEs?
The average CVSS base score across ESET's scored CVEs is 7.2.
How many critical CVEs has ESET published?
ESET has published 4 critical-severity CVEs and 16 high-severity CVEs.
Are any of ESET's CVEs in CISA's Known Exploited Vulnerabilities catalog?
Yes. 4 of ESET's CVEs are listed in CISA's Known Exploited Vulnerabilities (KEV) catalog, meaning they are confirmed to be exploited in the wild.
What are the most common weakness types in ESET's CVEs?
ESET's CVEs most often map to these CWE weakness types: CWE-269 (Improper Privilege Management), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-276 (Incorrect Default Permissions), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')).
How does ESET rank among CNAs?
By total CVE volume, ESET ranks #213 of 370 CNAs, and it reports more complete CVE records than 51% of all CNAs.