Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-8097

Опубликовано: 30 авг. 2020
Источник: nvd
CVSS3: 8.1
CVSS3: 7.8
CVSS2: 4.6
EPSS Низкий

Описание

An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK allows an unprivileged local attacker to escalate privileges or tamper with the product's security settings. This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.18.261. This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.18.261. Bitdefender Endpoint Security SDK versions prior to 6.6.18.261.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:bitdefender:endpoint_security:*:*:*:*:*:windows:*:*
Версия до 6.6.18.261 (исключая)
cpe:2.3:a:bitdefender:endpoint_security_tools:*:*:*:*:*:windows:*:*
Версия до 6.6.18.261 (исключая)

EPSS

Процентиль: 5%
0.00023
Низкий

8.1 High

CVSS3

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-287
CWE-287

Связанные уязвимости

github
больше 3 лет назад

An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK allows an unprivileged local attacker to escalate privileges or tamper with the product's security settings. This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.18.261. This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.18.261. Bitdefender Endpoint Security SDK versions prior to 6.6.18.261.

EPSS

Процентиль: 5%
0.00023
Низкий

8.1 High

CVSS3

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-287
CWE-287