An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Sep 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155. | An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155. |
MITRE
Status: PUBLISHED
Assigner: Bitdefender
Published: 2021-05-24T13:30:17.816453Z
Updated: 2024-09-16T16:28:38.711Z
Reserved: 2021-04-07T00:00:00
Link: CVE-2021-3485
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-05-24T14:15:07.983
Modified: 2024-11-21T06:21:39.380
Link: CVE-2021-3485
Redhat
No data.