P
Pandora
Security Risk Profile
47
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 7 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 15, 2017 to present
7
Total CVEs
6
Critical+High
0
Exploited
6
Unpatched
Threat Assessment
Avg CVSS
7.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
6
Critical/High
Risk Level
47/100
medium
📈 1 in Last 30 Days
Severity Distribution
Critical
0High
6Medium
1Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Command Injection
2
2
OS Command Injection
2
3
Malicious File Upload
1
4
Buffer Overflow
1
5
Infoleak
1
Most Affected Products
1. Pandora Kmplayer3
2. Pandora ITSM2
3. Pandora Pandora1
4. KMPlayer KMPlayer1
5. Pandora Pandora Iphone Os1
Recent Vulnerabilities
See more →CVE-2026-74767
CVSS 8.7high
Unbounded DAA Decompression in Pandora Allows Denial of Service via Decompression Bomb
Aug 15, 2026🔧 No Patch
CVE-2025-4678
CVSS 7.0high
Remote Code Execution leads to Command Injection
Jun 10, 2025🔧 No Patch
CVE-2025-4653
CVSS 7.0high
Remote Code Execution leads to Command Injection
Jun 10, 2025🔧 No Patch
CVE-2024-41200
CVSS 5.5medium
Aug 5, 2024🔧 No Patch
CVE-2023-1745
CVSS 7.8high
KMPlayer SHFOLDER.dll uncontrolled search path
Mar 30, 2023🔧 No Patch
CVE-2018-5200
CVSS 8.0high
KMPlayer Heap Overflow Vulnerability
Dec 20, 2018🔧 No Patch
CVE-2017-3194
CVSS 8.1high
Dec 15, 2017🔧 No Patch
Monitor Pandora in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.