CVE-2019-6440

Zemana AntiMalware before 3.0.658 Beta mishandles update logic.

Published: 2019-01-15 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2019-6440 is rated Moderate Risk (64.2/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 3.02%). Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2019-6440

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 10.64% 3.02% -7.62%
2 2025-03-30 22.08% 10.64% -11.43%
3 2025-03-29 22.08%

Full EPSS history (11 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2019-6440

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
9.8 3.0 CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:N)
No account or special rights needed—anonymous or random user is enough.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:H)
Serious risk that confidential data gets exposed in a big way.
Integrity (I:H)
They could widely tamper with or forge data—trust in the data is badly hurt.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
3.9 5.9 [email protected]
7.5 2.0 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:P)
Partial confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:P)
Partial availability impact.
10.0 6.4 [email protected]

Weakness enumeration for CVE-2019-6440

Affected software / configurations for CVE-2019-6440

Vendor Product Version Raw CPE
zemana antimalware 2.1.1.353 cpe:2.3:a:zemana:antimalware:2.1.1.353:beta:*:*:*:*:*:*
zemana antimalware 2.1.1.543 cpe:2.3:a:zemana:antimalware:2.1.1.543:beta:*:*:*:*:*:*
zemana antimalware 2.1.1.621 cpe:2.3:a:zemana:antimalware:2.1.1.621:beta:*:*:*:*:*:*
zemana antimalware 2.1.1.929 cpe:2.3:a:zemana:antimalware:2.1.1.929:beta:*:*:*:*:*:*
zemana antimalware 2.2.1.105 cpe:2.3:a:zemana:antimalware:2.2.1.105:beta:*:*:*:*:*:*
zemana antimalware 2.2.1.234 cpe:2.3:a:zemana:antimalware:2.2.1.234:beta:*:*:*:*:*:*
zemana antimalware 2.2.1.460 cpe:2.3:a:zemana:antimalware:2.2.1.460:beta:*:*:*:*:*:*
zemana antimalware 2.4.1.100 cpe:2.3:a:zemana:antimalware:2.4.1.100:beta:*:*:*:*:*:*
zemana antimalware 2.5.1.257 cpe:2.3:a:zemana:antimalware:2.5.1.257:beta:*:*:*:*:*:*
zemana antimalware 2.5.1.329 cpe:2.3:a:zemana:antimalware:2.5.1.329:beta:*:*:*:*:*:*
zemana antimalware 2.5.2.256 cpe:2.3:a:zemana:antimalware:2.5.2.256:*:*:*:*:*:*:*
zemana antimalware 2.6.1.430 cpe:2.3:a:zemana:antimalware:2.6.1.430:beta:*:*:*:*:*:*
zemana antimalware 2.6.1.436 cpe:2.3:a:zemana:antimalware:2.6.1.436:beta:*:*:*:*:*:*
zemana antimalware 2.7.2.440 cpe:2.3:a:zemana:antimalware:2.7.2.440:*:*:*:*:*:*:*
zemana antimalware 2.8.1.971 cpe:2.3:a:zemana:antimalware:2.8.1.971:beta:*:*:*:*:*:*
zemana antimalware 2.9.1.402 cpe:2.3:a:zemana:antimalware:2.9.1.402:beta:*:*:*:*:*:*
zemana antimalware 2.9.1.440 cpe:2.3:a:zemana:antimalware:2.9.1.440:beta:*:*:*:*:*:*
zemana antimalware 2.9.1.467 cpe:2.3:a:zemana:antimalware:2.9.1.467:beta:*:*:*:*:*:*
zemana antimalware 2.9.1.918 cpe:2.3:a:zemana:antimalware:2.9.1.918:beta:*:*:*:*:*:*
zemana antimalware 2.9.1.944 cpe:2.3:a:zemana:antimalware:2.9.1.944:beta:*:*:*:*:*:*
zemana antimalware 2.10.1.17 cpe:2.3:a:zemana:antimalware:2.10.1.17:beta:*:*:*:*:*:*
zemana antimalware 2.10.1.18 cpe:2.3:a:zemana:antimalware:2.10.1.18:beta:*:*:*:*:*:*
zemana antimalware 2.10.1.774 cpe:2.3:a:zemana:antimalware:2.10.1.774:beta:*:*:*:*:*:*
zemana antimalware 2.10.1.895 cpe:2.3:a:zemana:antimalware:2.10.1.895:beta:*:*:*:*:*:*
zemana antimalware 2.11.1.9 cpe:2.3:a:zemana:antimalware:2.11.1.9:beta:*:*:*:*:*:*
zemana antimalware 2.11.1.62 cpe:2.3:a:zemana:antimalware:2.11.1.62:beta:*:*:*:*:*:*
zemana antimalware 2.11.1.366 cpe:2.3:a:zemana:antimalware:2.11.1.366:beta:*:*:*:*:*:*
zemana antimalware 2.11.1.514 cpe:2.3:a:zemana:antimalware:2.11.1.514:beta:*:*:*:*:*:*
zemana antimalware 2.11.2.62 cpe:2.3:a:zemana:antimalware:2.11.2.62:*:*:*:*:*:*:*
zemana antimalware 2.11.2.366 cpe:2.3:a:zemana:antimalware:2.11.2.366:*:*:*:*:*:*:*
zemana antimalware 2.11.2.514 cpe:2.3:a:zemana:antimalware:2.11.2.514:*:*:*:*:*:*:*
zemana antimalware 2.14.1.667 cpe:2.3:a:zemana:antimalware:2.14.1.667:beta:*:*:*:*:*:*
zemana antimalware 2.14.1.982 cpe:2.3:a:zemana:antimalware:2.14.1.982:beta:*:*:*:*:*:*
zemana antimalware 2.14.2.667 cpe:2.3:a:zemana:antimalware:2.14.2.667:*:*:*:*:*:*:*
zemana antimalware 2.15.1.157 cpe:2.3:a:zemana:antimalware:2.15.1.157:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.206 cpe:2.3:a:zemana:antimalware:2.15.1.206:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.229 cpe:2.3:a:zemana:antimalware:2.15.1.229:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.544 cpe:2.3:a:zemana:antimalware:2.15.1.544:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.600 cpe:2.3:a:zemana:antimalware:2.15.1.600:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.677 cpe:2.3:a:zemana:antimalware:2.15.1.677:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.721 cpe:2.3:a:zemana:antimalware:2.15.1.721:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.836 cpe:2.3:a:zemana:antimalware:2.15.1.836:beta:*:*:*:*:*:*
zemana antimalware 2.15.1.840 cpe:2.3:a:zemana:antimalware:2.15.1.840:beta:*:*:*:*:*:*
zemana antimalware 2.15.2.206 cpe:2.3:a:zemana:antimalware:2.15.2.206:*:*:*:*:*:*:*
zemana antimalware 2.15.2.229 cpe:2.3:a:zemana:antimalware:2.15.2.229:*:*:*:*:*:*:*
zemana antimalware 2.15.2.721 cpe:2.3:a:zemana:antimalware:2.15.2.721:*:*:*:*:*:*:*
zemana antimalware 2.16.1.67 cpe:2.3:a:zemana:antimalware:2.16.1.67:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.94 cpe:2.3:a:zemana:antimalware:2.16.1.94:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.198 cpe:2.3:a:zemana:antimalware:2.16.1.198:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.292 cpe:2.3:a:zemana:antimalware:2.16.1.292:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.558 cpe:2.3:a:zemana:antimalware:2.16.1.558:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.633 cpe:2.3:a:zemana:antimalware:2.16.1.633:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.716 cpe:2.3:a:zemana:antimalware:2.16.1.716:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.886 cpe:2.3:a:zemana:antimalware:2.16.1.886:beta:*:*:*:*:*:*
zemana antimalware 2.16.1.938 cpe:2.3:a:zemana:antimalware:2.16.1.938:beta:*:*:*:*:*:*
zemana antimalware 2.16.2.198 cpe:2.3:a:zemana:antimalware:2.16.2.198:*:*:*:*:*:*:*
zemana antimalware 2.16.2.292 cpe:2.3:a:zemana:antimalware:2.16.2.292:*:*:*:*:*:*:*
zemana antimalware 2.16.2.558 cpe:2.3:a:zemana:antimalware:2.16.2.558:*:*:*:*:*:*:*
zemana antimalware 2.16.2.633 cpe:2.3:a:zemana:antimalware:2.16.2.633:*:*:*:*:*:*:*
zemana antimalware 2.16.2.938 cpe:2.3:a:zemana:antimalware:2.16.2.938:*:*:*:*:*:*:*
zemana antimalware 2.17.1.33 cpe:2.3:a:zemana:antimalware:2.17.1.33:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.82 cpe:2.3:a:zemana:antimalware:2.17.1.82:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.100 cpe:2.3:a:zemana:antimalware:2.17.1.100:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.116 cpe:2.3:a:zemana:antimalware:2.17.1.116:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.839 cpe:2.3:a:zemana:antimalware:2.17.1.839:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.906 cpe:2.3:a:zemana:antimalware:2.17.1.906:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.916 cpe:2.3:a:zemana:antimalware:2.17.1.916:beta:*:*:*:*:*:*
zemana antimalware 2.17.1.985 cpe:2.3:a:zemana:antimalware:2.17.1.985:beta:*:*:*:*:*:*
zemana antimalware 2.17.2.33 cpe:2.3:a:zemana:antimalware:2.17.2.33:*:*:*:*:*:*:*
zemana antimalware 2.17.2.116 cpe:2.3:a:zemana:antimalware:2.17.2.116:*:*:*:*:*:*:*
zemana antimalware 2.18.1.19 cpe:2.3:a:zemana:antimalware:2.18.1.19:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.90 cpe:2.3:a:zemana:antimalware:2.18.1.90:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.101 cpe:2.3:a:zemana:antimalware:2.18.1.101:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.135 cpe:2.3:a:zemana:antimalware:2.18.1.135:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.231 cpe:2.3:a:zemana:antimalware:2.18.1.231:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.254 cpe:2.3:a:zemana:antimalware:2.18.1.254:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.263 cpe:2.3:a:zemana:antimalware:2.18.1.263:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.372 cpe:2.3:a:zemana:antimalware:2.18.1.372:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.438 cpe:2.3:a:zemana:antimalware:2.18.1.438:beta:*:*:*:*:*:*
zemana antimalware 2.18.1.462 cpe:2.3:a:zemana:antimalware:2.18.1.462:beta:*:*:*:*:*:*

References for CVE-2019-6440

URL Tags
https://www.zemana.com/whats-new?ProductID=2 Release Notes Vendor Advisory
cvelogic Threat Intelligence