5.5
CVE-2019-17103
- EPSS 0.08%
- Veröffentlicht 27.01.2020 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:41
- Quelle cve-requests@bitdefender.com
- CVE-Watchlists
- Unerledigt
Get-task-allow entitlement via BDLDaemon on macOS
An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker to elevate permissions to read protected directories. This issue affects: Bitdefender AV for Mac versions prior to 8.0.0.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bitdefender ≫ Antivirus SwPlatformmacos Version < 8.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.23 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
| cve-requests@bitdefender.com | 4.9 | 0.5 | 4 |
CVSS:3.1/AV:P/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.