ESET Products Vulnerable to Denial of Service
A vulnerability in multiple ESET Endpoint Antivirus and Server Security versions can be exploited to cause a denial of service.
ANSSI (CERT-FR) published an advisory covering a denial-of-service vulnerability affecting several ESET security products, including Endpoint Antivirus and Server Security across multiple version branches (12.0.x through 13.2.x). The flaw is tracked as CVE-2026-6424 and was disclosed alongside an ESET security bulletin (ca8972) on 15 July 2026.
No exploitation in the wild is reported, and the issue is limited to availability impact rather than code execution or data compromise. Affected organizations should apply the vendor-supplied patches referenced in the ESET bulletin to remediate the vulnerable versions.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0892
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free