An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155.
History

Mon, 16 Sep 2024 16:45:00 +0000

Type Values Removed Values Added
Description An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155. An Improper Input Validation vulnerability in the Product Update feature of Bitdefender Endpoint Security Tools for Linux allows a man-in-the-middle attacker to abuse the DownloadFile function of the Product Update to achieve remote code execution. This issue affects: Bitdefender Endpoint Security Tools for Linux versions prior to 6.2.21.155.

cve-icon MITRE

Status: PUBLISHED

Assigner: Bitdefender

Published: 2021-05-24T13:30:17.816453Z

Updated: 2024-09-16T16:28:38.711Z

Reserved: 2021-04-07T00:00:00

Link: CVE-2021-3485

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-24T14:15:07.983

Modified: 2024-11-21T06:21:39.380

Link: CVE-2021-3485

cve-icon Redhat

No data.