McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
Conclusion & alert: CVE-2004-0932 is rated High Exploit Risk (74/100): CVSS High severity, with high exploitation likelihood (EPSS 43.59%, 97th percentile). Core evidence: 2 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| 629 | exploit_db | edb | 2004-11-14 | Exploit-DB ↗ |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 55.98% | 43.59% | -12.40% |
| 2 | 2025-03-29 | 43.59% | 55.98% | +12.40% |
| 3 | 2025-03-17 | — | 43.59% | — |
Full EPSS history (9 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.5 | 2.0 | HIGH |
|
10.0 | 6.4 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| archive_zip | archive_zip | 1.13 | cpe:2.3:a:archive_zip:archive_zip:1.13:*:*:*:*:*:*:* |
| broadcom | brightstor_arcserve_backup | 11.1 | cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.1:*:*:*:*:*:*:* |
| broadcom | etrust_antivirus | 7.0 | cpe:2.3:a:broadcom:etrust_antivirus:7.0:*:*:*:*:*:*:* |
| broadcom | etrust_antivirus | 7.1 | cpe:2.3:a:broadcom:etrust_antivirus:7.1:*:*:*:*:*:*:* |
| broadcom | etrust_antivirus_gateway | 7.0 | cpe:2.3:a:broadcom:etrust_antivirus_gateway:7.0:*:*:*:*:*:*:* |
| broadcom | etrust_antivirus_gateway | 7.1 | cpe:2.3:a:broadcom:etrust_antivirus_gateway:7.1:*:*:*:*:*:*:* |
| broadcom | etrust_ez_antivirus | 6.1 | cpe:2.3:a:broadcom:etrust_ez_antivirus:6.1:*:*:*:*:*:*:* |
| broadcom | etrust_ez_antivirus | 6.2 | cpe:2.3:a:broadcom:etrust_ez_antivirus:6.2:*:*:*:*:*:*:* |
| broadcom | etrust_ez_antivirus | 6.3 | cpe:2.3:a:broadcom:etrust_ez_antivirus:6.3:*:*:*:*:*:*:* |
| broadcom | etrust_ez_armor | 2.0 | cpe:2.3:a:broadcom:etrust_ez_armor:2.0:*:*:*:*:*:*:* |
| broadcom | etrust_ez_armor | 2.3 | cpe:2.3:a:broadcom:etrust_ez_armor:2.3:*:*:*:*:*:*:* |
| broadcom | etrust_ez_armor | 2.4 | cpe:2.3:a:broadcom:etrust_ez_armor:2.4:*:*:*:*:*:*:* |
| broadcom | etrust_intrusion_detection | 1.4.1.13 | cpe:2.3:a:broadcom:etrust_intrusion_detection:1.4.1.13:*:*:*:*:*:*:* |
| broadcom | etrust_intrusion_detection | 1.4.5 | cpe:2.3:a:broadcom:etrust_intrusion_detection:1.4.5:*:*:*:*:*:*:* |
| broadcom | etrust_intrusion_detection | 1.5 | cpe:2.3:a:broadcom:etrust_intrusion_detection:1.5:*:*:*:*:*:*:* |
| broadcom | etrust_secure_content_manager | 1.0 | cpe:2.3:a:broadcom:etrust_secure_content_manager:1.0:*:*:*:*:*:*:* |
| broadcom | etrust_secure_content_manager | 1.1 | cpe:2.3:a:broadcom:etrust_secure_content_manager:1.1:*:*:*:*:*:*:* |
| broadcom | inoculateit | 6.0 | cpe:2.3:a:broadcom:inoculateit:6.0:*:*:*:*:*:*:* |
| ca | etrust_antivirus | 7.0_sp2 | cpe:2.3:a:ca:etrust_antivirus:7.0_sp2:*:*:*:*:*:*:* |
| ca | etrust_secure_content_manager | 1.0 | cpe:2.3:a:ca:etrust_secure_content_manager:1.0:sp1:*:*:*:*:*:* |
| eset_software | nod32_antivirus | 1.0.11 | cpe:2.3:a:eset_software:nod32_antivirus:1.0.11:*:*:*:*:*:*:* |
| eset_software | nod32_antivirus | 1.0.12 | cpe:2.3:a:eset_software:nod32_antivirus:1.0.12:*:*:*:*:*:*:* |
| eset_software | nod32_antivirus | 1.0.13 | cpe:2.3:a:eset_software:nod32_antivirus:1.0.13:*:*:*:*:*:*:* |
| kaspersky_lab | kaspersky_anti-virus | 3.0 | cpe:2.3:a:kaspersky_lab:kaspersky_anti-virus:3.0:*:*:*:*:*:*:* |
| kaspersky_lab | kaspersky_anti-virus | 4.0 | cpe:2.3:a:kaspersky_lab:kaspersky_anti-virus:4.0:*:*:*:*:*:*:* |
| kaspersky_lab | kaspersky_anti-virus | 5.0 | cpe:2.3:a:kaspersky_lab:kaspersky_anti-virus:5.0:*:*:*:*:*:*:* |
| mcafee | antivirus_engine | 4.3.20 | cpe:2.3:a:mcafee:antivirus_engine:4.3.20:*:*:*:*:*:*:* |
| rav_antivirus | rav_antivirus_desktop | 8.6 | cpe:2.3:a:rav_antivirus:rav_antivirus_desktop:8.6:*:*:*:*:*:*:* |
| rav_antivirus | rav_antivirus_for_file_servers | 1.0 | cpe:2.3:a:rav_antivirus:rav_antivirus_for_file_servers:1.0:*:*:*:*:*:*:* |
| rav_antivirus | rav_antivirus_for_mail_servers | 8.4.2 | cpe:2.3:a:rav_antivirus:rav_antivirus_for_mail_servers:8.4.2:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.4.6 | cpe:2.3:a:sophos:sophos_anti-virus:3.4.6:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.78 | cpe:2.3:a:sophos:sophos_anti-virus:3.78:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.78d | cpe:2.3:a:sophos:sophos_anti-virus:3.78d:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.79 | cpe:2.3:a:sophos:sophos_anti-virus:3.79:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.80 | cpe:2.3:a:sophos:sophos_anti-virus:3.80:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.81 | cpe:2.3:a:sophos:sophos_anti-virus:3.81:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.82 | cpe:2.3:a:sophos:sophos_anti-virus:3.82:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.83 | cpe:2.3:a:sophos:sophos_anti-virus:3.83:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.84 | cpe:2.3:a:sophos:sophos_anti-virus:3.84:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.85 | cpe:2.3:a:sophos:sophos_anti-virus:3.85:*:*:*:*:*:*:* |
| sophos | sophos_anti-virus | 3.86 | cpe:2.3:a:sophos:sophos_anti-virus:3.86:*:*:*:*:*:*:* |
| sophos | sophos_puremessage_anti-virus | 4.6 | cpe:2.3:a:sophos:sophos_puremessage_anti-virus:4.6:*:*:*:*:*:*:* |
| sophos | sophos_small_business_suite | 1.0 | cpe:2.3:a:sophos:sophos_small_business_suite:1.0:*:*:*:*:*:*:* |
| gentoo | linux | — | cpe:2.3:o:gentoo:linux:*:*:*:*:*:*:*:* |
| gentoo | linux | 1.4 | cpe:2.3:o:gentoo:linux:1.4:*:*:*:*:*:*:* |
| mandrakesoft | mandrake_linux | 10.1 | cpe:2.3:o:mandrakesoft:mandrake_linux:10.1:*:*:*:*:*:*:* |
| mandrakesoft | mandrake_linux | 10.1 | cpe:2.3:o:mandrakesoft:mandrake_linux:10.1:*:x86_64:*:*:*:*:* |
| suse | suse_linux | 9.2 | cpe:2.3:o:suse:suse_linux:9.2:*:*:*:*:*:*:* |