Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29005 | An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privilege attacker to execute code as SYSTEM via a specially crafted DLL file. |
Solution
The vulnerability was fixed in Bitdefender Antivirus Free version 1.0.16.152. The fix has been automatically applied to affected instances.
Workaround
No workaround given by the vendor.
Fri, 07 Feb 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bitdefender
Bitdefender antivirus 2020 |
|
| CPEs | cpe:2.3:a:bitdefender:antivirus_2020:*:*:*:*:free:*:*:* | |
| Vendors & Products |
Bitdefender
Bitdefender antivirus 2020 |
|
| Metrics |
cvssV3_1
|
Wed, 15 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 15 Jan 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privilege attacker to execute code as SYSTEM via a specially crafted DLL file. | |
| Title | Untrusted Search Path Vulnerability in Bitdefender Antivirus Free 2020 (VA-8422) | |
| Weaknesses | CWE-426 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2025-01-15T16:48:23.541Z
Reserved: 2020-01-28T00:00:00.000Z
Link: CVE-2020-8094
Updated: 2025-01-15T16:47:34.075Z
Status : Analyzed
Published: 2025-01-15T17:15:09.810
Modified: 2025-02-07T21:07:34.963
Link: CVE-2020-8094
No data.
OpenCVE Enrichment
No data.
EUVD