PT-2005-2289 · Bitdefender · Bitdefender

Froggz

·

Published

2005-04-26

·

Updated

2016-10-18

·

CVE-2005-1286

CVSS v2.0

1.2

Low

VectorAV:L/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: BitDefender version 8
Description: The issue is related to an unquoted Windows search path vulnerability. It allows local users to prevent BitDefender from starting by creating a malicious file, for example, C:program.exe. This could be due to the lack of quoting of the full pathname when executing a process.
Recommendations: For BitDefender version 8, consider renaming or removing any malicious files that could be exploited, such as C:program.exe, to prevent the issue from occurring. As a temporary workaround, ensure that no malicious files are created in the Windows search path to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1286

Affected Products

Bitdefender