CVE-2023-5594: Eset Endpoint Antivirus

High severity, CVSS 8.6. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate signed using the MD5 or SHA1 algorithm as trusted.

Affected products

  • Eset Endpoint Antivirus: from 10.0; affected versions not specified
  • Eset Endpoint Security: affected versions not specified
  • Eset File Security: affected versions not specified
  • Eset Internet Security: affected versions not specified
  • Eset Mail Security: affected versions not specified
  • Eset NOD32 Antivirus: affected versions not specified
  • Eset Security: affected versions not specified
  • Eset Server Security: from 10.1; affected versions not specified
  • Eset Smart Security: affected versions not specified

Published 2023-12-21. Last modified 2026-06-17.