← Vulnerability feed

Vulnerability record · CVE-2013-4602 · published 12 February 2020

CVE-2013-4602: Avira antivir mailgate uncontrolled resource consumption vulnerability

Avira · Antivir Mailgate

A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engine.

5.5 CVSS 3.1 Medium EPSS 1.4% · top 28.3% CWE-400 · Uncontrolled resource consumption
5.5CVSS 3.1 base score, v2 7.1
1.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
10Affected product versions listed by NVD
10References
16 Jun 2026Last modified by NVD

Description

A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engine.

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected products

10 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-4602 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2007-1673Amavis vulnerabilityunzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a …EPSS 3.2%7.8CVE-2007-1671Avira antivir personal vulnerabilityavpack32.dll before 7.3.0.6 in Avira AntiVir allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry s…EPSS 2.0%7.2CVE-2008-6962Avira antivir improper input validation vulnerabilityAvira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a c…EPSS 0.65%7.2CVE-2006-1274Avira antivir personal vulnerabilityClassic Planer in AntiVir PersonalEdition Classic 7 does not drop privileges before executing external programs, which allows local users to gain pri…EPSS 0.38%5.1CVE-2005-3219Avira antivir personal vulnerabilityMultiple interpretation error in unspecified versions of Avira Antivirus allows remote attackers to bypass virus detection via a malicious executable…EPSS 1.7%5.1CVE-2005-3224Avira antivir personal vulnerabilityMultiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executab…EPSS 1.7%4.6CVE-2006-4619Avira antivir personal vulnerabilityThe start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shat…EPSS 0.33%7.5CVE-2026-28318SolarWinds Serv-U unauthenticated POST request denial of serviceSolarWinds Serv-U crashes when it receives a specially crafted POST request using Content-Encoding: deflate, and the crash occurs without authenticat…KEVEPSS 1.9%analysed

Source: NIST National Vulnerability Database (record CVE-2013-4602), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.