Description
An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Internet Security on Windows allows a less-privileged local user to elevate rights by leveraging a race conditions via Symbolic Links.

This issue affects Total Security: before 27.0.58.315; Internet Security: before 27.0.58.315.
Published: 2026-07-14
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An improper link resolution before file access in the File Shredder module allows a less‑privileged local user to create or manipulate symbolic links, triggering a race condition that can cause the program to access unintended files. This flaw is categorized as CWE‑59 and can lead to elevation of privileges or modification of protected files, compromising the integrity of the system.

Affected Systems

Bitdefender Internet Security and Bitdefender Total Security on Windows, any version prior to 27.0.58.315, are affected. Users running these versions are vulnerable to the race‑condition attack described.

Risk and Exploitability

The vulnerability carries a CVSS score of 7, indicating a high impact if exploited. An EPSS score of less than 1% implies that exploitation is unlikely at present, and it is not listed in the CISA KEV catalog. The attack vector is local, relying on a user who can create symbolic links within the system; without a publicly documented exploit, the risk for unpatched systems remains moderate but should be mitigated promptly.

Generated by OpenCVE AI on July 31, 2026 at 10:43 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Bitdefender Total Security and Internet Security to version 27.0.58.315 or later to apply the vendor’s fix.
  • Restrict local user accounts from executing the File Shredder module by configuring appropriate access controls or group policies.
  • Disable or tightly monitor symbolic link creation on the Windows system to reduce the risk of race‑condition exploitation.

Generated by OpenCVE AI on July 31, 2026 at 10:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 14 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Bitdefender
Bitdefender internet Security
Bitdefender total Security
Vendors & Products Bitdefender
Bitdefender internet Security
Bitdefender total Security

Tue, 14 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Description An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Internet Security on Windows allows a less-privileged local user to elevate rights by leveraging a race conditions via Symbolic Links. This issue affects Total Security: before 27.0.58.315; Internet Security: before 27.0.58.315.
Title Improper link resolution before file access in Bitdefender Total Security via Link Following (VA-13681)
Weaknesses CWE-59
References
Metrics cvssV4_0

{'score': 7, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Bitdefender Internet Security Total Security
cve-icon MITRE

Status: PUBLISHED

Assigner: Bitdefender

Published:

Updated: 2026-07-15T04:00:51.554Z

Reserved: 2026-04-22T10:06:58.221Z

Link: CVE-2026-6851

cve-icon Vulnrichment

Updated: 2026-07-14T12:34:43.522Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T10:45:04Z

Weaknesses
  • CWE-59

    Improper Link Resolution Before File Access ('Link Following')