CVE-2024-11859: Eset, Spol. S R.o Eset Endpoint Antivirus For Windows
High severity, CVSS 8.4. EPSS: 2.1% chance of exploitation in the next 30 days.
DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and execute its code.
Affected products
- Eset, Spol. S R.o Eset Endpoint Antivirus For Windows: up to and including 12.0.2038.0; up to and including 11.1.2053.2
- Eset, Spol. S R.o Eset Endpoint Security For Windows: up to and including 12.0.2038.0; up to and including 11.1.2053.2
- Eset, Spol. S R.o Eset Internet Security: up to and including 18.0.12.0
- Eset, Spol. S R.o Eset Mail Security For Microsoft Exchange Server: up to and including 11.1.10008.0; up to and including 11.0.10008.0; up to and including 10.1.10014.0
- Eset, Spol. S R.o Eset NOD32 Antivirus: up to and including 18.0.12.0
- Eset, Spol. S R.o Eset Safe Server: up to and including 18.0.12.0
- Eset, Spol. S R.o Eset Security For Microsoft SharePoint Server: up to and including 11.1.15001.0; up to and including 11.0.15004.0; up to and including 10.0.15005.1
- Eset, Spol. S R.o Eset Security Ultimate: up to and including 18.0.12.0
- Eset, Spol. S R.o Eset Server Security For Windows Server: up to and including 11.1.12005.2
- Eset, Spol. S R.o Eset Small Business Security: up to and including 18.0.12.0
- Eset, Spol. S R.o Eset Smart Security Premium: up to and including 18.0.12.0
Published 2025-04-07. Last modified 2026-06-17.