CVE-2025-2425: Eset, Spol. S.r.o Eset Endpoint Antivirus For Windows
Medium severity, CVSS 5.1. EPSS: 0.1% chance of exploitation in the next 30 days.
Time-of-check to time-of-use race condition vulnerability potentially allowed an attacker to use the installed ESET security software to clear the content of an arbitrary file on the file system.
Affected products
- Eset, Spol. S.r.o Eset Endpoint Antivirus For Windows: up to and including 12.0.2049.0; up to and including 11.1.2059.0
- Eset, Spol. S.r.o Eset Endpoint Security For Windows: up to and including 12.0.2049.0; up to and including 11.1.2059.0
- Eset, Spol. S.r.o Eset Internet Security: up to and including 18.1.13.0
- Eset, Spol. S.r.o Eset Mail Security For Microsoft Exchange Server: up to and including 12.0.10003.0; up to and including 11.1.10011.0
- Eset, Spol. S.r.o Eset NOD32 Antivirus: up to and including 18.1.13.0
- Eset, Spol. S.r.o Eset Safe Server: up to and including 18.1.13.0
- Eset, Spol. S.r.o Eset Security For Microsoft SharePoint Server: up to and including 12.0.15004.0; up to and including 11.1.15003.0
- Eset, Spol. S.r.o Eset Security Ultimate: up to and including 18.1.13.0
- Eset, Spol. S.r.o Eset Server Security For Windows Server: up to and including 12.0.12004.0; up to and including 11.1.12009.1
- Eset, Spol. S.r.o Eset Small Business Security: up to and including 18.1.13.0
- Eset, Spol. S.r.o Eset Smart Security Premium: up to and including 18.1.13.0
Published 2025-07-18. Last modified 2026-06-17.