A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService component of Bitdefender Endpoint Security Tools allows an attacker to proxy requests to the relay server. This issue affects: Bitdefender Endpoint Security Tools versions prior to 6.6.27.390; versions prior to 7.1.2.33. Bitdefender GravityZone 6.24.1-1.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-26863 | A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService component of Bitdefender Endpoint Security Tools allows an attacker to proxy requests to the relay server. This issue affects: Bitdefender Endpoint Security Tools versions prior to 6.6.27.390; versions prior to 7.1.2.33. Bitdefender GravityZone 6.24.1-1. |
Fixes
Solution
No solution given by the vendor.
Workaround
An automatic update to version 6.6.27.390 fixes the issue.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2024-09-16T17:33:06.659Z
Reserved: 2021-05-17T00:00:00
Link: CVE-2021-3552
No data.
Status : Modified
Published: 2021-11-24T16:15:13.667
Modified: 2024-11-21T06:21:49.433
Link: CVE-2021-3552
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD