Bitdefender

Endpoint Security Tools

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.54%
  • Veröffentlicht 07.04.2022 19:15:07
  • Zuletzt bearbeitet 21.11.2024 06:39:09

Improper Handling of Length Parameter Inconsistency vulnerability in the Update Server component of Bitdefender Endpoint Security Tools (in relay role), GravityZone (in Update Server role) allows an attacker to cause a Denial-of-Service. This issue a...

  • EPSS 0.58%
  • Veröffentlicht 07.03.2022 12:15:08
  • Zuletzt bearbeitet 21.11.2024 06:37:07

Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to...

  • EPSS 0.13%
  • Veröffentlicht 07.03.2022 12:15:07
  • Zuletzt bearbeitet 21.11.2024 06:37:07

A NULL Pointer Dereference vulnerability in the messaging_ipc.dll component as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools, VPN Standalone allows an attacker to arbitrarily crash product processes an...

  • EPSS 0.21%
  • Veröffentlicht 24.11.2021 16:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:49

A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService component of Bitdefender Endpoint Security Tools allows an attacker to proxy requests to the relay server. This issue affects: Bitdefender Endpoint Security Tools versions pri...

  • EPSS 0.22%
  • Veröffentlicht 24.11.2021 16:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:49

A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService of Bitdefender Endpoint Security Tools allows an attacker to use the Endpoint Protection relay as a proxy for any remote host. This issue affects: Bitdefender Endpoint Securit...

  • EPSS 0.32%
  • Veröffentlicht 24.11.2021 16:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:49

Improper Access Control vulnerability in the patchesUpdate API as implemented in Bitdefender Endpoint Security Tools for Linux as a relay role allows an attacker to manipulate the remote address used for pulling patches. This issue affects: Bitdefend...

  • EPSS 0.09%
  • Veröffentlicht 28.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:21:53

Execution with Unnecessary Privileges vulnerability in Bitdefender Endpoint Security Tools, Total Security allows a local attacker to elevate to 'NT AUTHORITY\System. Impersonation enables the server thread to perform actions on behalf of the client ...

  • EPSS 0.08%
  • Veröffentlicht 28.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:21:53

Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender Endpoint Security Tools for Windows, Total Security allows a local attacker to elevate privileges to NT AUTHORITY\SYSTEM...

Exploit
  • EPSS 0.78%
  • Veröffentlicht 24.05.2021 14:15:07
  • Zuletzt bearbeitet 21.11.2024 06:21:39

An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. T...

  • EPSS 0.11%
  • Veröffentlicht 18.05.2021 11:15:07
  • Zuletzt bearbeitet 21.11.2024 05:05:15

An Improper Access Control vulnerability in the logging component of Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.23.320 allows a regular user to learn the scanning exclusion paths. This issue was discovered during external s...