PT-2005-2289 · Bitdefender · Bitdefender
Froggz
·
Published
2005-04-26
·
Updated
2016-10-18
·
CVE-2005-1286
CVSS v2.0
1.2
Low
| Vector | AV:L/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
BitDefender version 8
Description:
The issue is related to an unquoted Windows search path vulnerability. It allows local users to prevent BitDefender from starting by creating a malicious file, for example, C:program.exe. This could be due to the lack of quoting of the full pathname when executing a process.
Recommendations:
For BitDefender version 8, consider renaming or removing any malicious files that could be exploited, such as C:program.exe, to prevent the issue from occurring. As a temporary workaround, ensure that no malicious files are created in the Windows search path to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bitdefender