CVE-2022-0677
- EPSS 0.54%
- Veröffentlicht 07.04.2022 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:39:09
Improper Handling of Length Parameter Inconsistency vulnerability in the Update Server component of Bitdefender Endpoint Security Tools (in relay role), GravityZone (in Update Server role) allows an attacker to cause a Denial-of-Service. This issue a...
CVE-2021-4199
- EPSS 0.58%
- Veröffentlicht 07.03.2022 12:15:08
- Zuletzt bearbeitet 21.11.2024 06:37:07
Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to...
CVE-2021-4198
- EPSS 0.13%
- Veröffentlicht 07.03.2022 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:37:07
A NULL Pointer Dereference vulnerability in the messaging_ipc.dll component as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools, VPN Standalone allows an attacker to arbitrarily crash product processes an...
CVE-2021-3552
- EPSS 0.21%
- Veröffentlicht 24.11.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:49
A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService component of Bitdefender Endpoint Security Tools allows an attacker to proxy requests to the relay server. This issue affects: Bitdefender Endpoint Security Tools versions pri...
CVE-2021-3553
- EPSS 0.22%
- Veröffentlicht 24.11.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:49
A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService of Bitdefender Endpoint Security Tools allows an attacker to use the Endpoint Protection relay as a proxy for any remote host. This issue affects: Bitdefender Endpoint Securit...
- EPSS 0.32%
- Veröffentlicht 24.11.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:49
Improper Access Control vulnerability in the patchesUpdate API as implemented in Bitdefender Endpoint Security Tools for Linux as a relay role allows an attacker to manipulate the remote address used for pulling patches. This issue affects: Bitdefend...
CVE-2021-3576
- EPSS 0.09%
- Veröffentlicht 28.10.2021 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:53
Execution with Unnecessary Privileges vulnerability in Bitdefender Endpoint Security Tools, Total Security allows a local attacker to elevate to 'NT AUTHORITY\System. Impersonation enables the server thread to perform actions on behalf of the client ...
CVE-2021-3579
- EPSS 0.08%
- Veröffentlicht 28.10.2021 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:53
Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender Endpoint Security Tools for Windows, Total Security allows a local attacker to elevate privileges to NT AUTHORITY\SYSTEM...
CVE-2021-3485
- EPSS 0.78%
- Veröffentlicht 24.05.2021 14:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:39
An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. T...
CVE-2020-15279
- EPSS 0.11%
- Veröffentlicht 18.05.2021 11:15:07
- Zuletzt bearbeitet 21.11.2024 05:05:15
An Improper Access Control vulnerability in the logging component of Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.23.320 allows a regular user to learn the scanning exclusion paths. This issue was discovered during external s...