Multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, F-Secure Protection Service, and others, allow remote attackers to bypass malware detection via a crafted RAR archive. NOTE: this might be related to CVE-2008-0792.
Conclusion & alert: CVE-2008-0910 is rated Moderate Risk (55.7/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.75%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-05-09 | 0.70% | 0.75% | +0.05% |
| 2 | 2025-03-17 | 8.12% | 0.70% | -7.42% |
| 3 | 2025-03-12 | — | 8.12% | — |
Full EPSS history (10 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.5 | 2.0 | HIGH |
|
10.0 | 6.4 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| f-secure | f-secure_anti-virus | 2006 | cpe:2.3:a:f-secure:f-secure_anti-virus:2006:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus | 2007 | cpe:2.3:a:f-secure:f-secure_anti-virus:2007:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus | 2007 | cpe:2.3:a:f-secure:f-secure_anti-virus:2007:second_edition:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus | 2008 | cpe:2.3:a:f-secure:f-secure_anti-virus:2008:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_client_security | 6.03 | cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:6.03:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_client_security | 6.04 | cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:6.04:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_client_security | 7.01 | cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:7.01:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_client_security | 7.10 | cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:7.10:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_for_linux | 4.65 | cpe:2.3:a:f-secure:f-secure_anti-virus_for_linux:4.65:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_for_workstations | 5.44 | cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:5.44:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_for_workstations | 7.00 | cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.00:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_for_workstations | 7.10 | cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.10:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_linux_client_security | 5.52 | cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.52:*:*:*:*:*:*:* |
| f-secure | f-secure_anti-virus_linux_client_security | 5.53 | cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.53:*:*:*:*:*:*:* |
| f-secure | f-secure_internet_security | 2006 | cpe:2.3:a:f-secure:f-secure_internet_security:2006:*:*:*:*:*:*:* |
| f-secure | f-secure_internet_security | 2007 | cpe:2.3:a:f-secure:f-secure_internet_security:2007:*:*:*:*:*:*:* |
| f-secure | f-secure_internet_security | 2007 | cpe:2.3:a:f-secure:f-secure_internet_security:2007:second_edition:*:*:*:*:*:* |
| f-secure | f-secure_internet_security | 2008 | cpe:2.3:a:f-secure:f-secure_internet_security:2008:*:*:*:*:*:*:* |
| f-secure | f-secure_protection_service_for_business | <= 3.00 | cpe:2.3:a:f-secure:f-secure_protection_service_for_business:*:*:*:*:*:*:*:* |
| f-secure | f-secure_protection_service_for_consumers | <= 7.00 | cpe:2.3:a:f-secure:f-secure_protection_service_for_consumers:*:*:*:*:*:*:*:* |