CVE-2020-8107
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/02/2022
Last modified:
25/02/2022
Description
A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with product settings via a specially crafted DLL file. This issue affects: Bitdefender Antivirus Plus versions prior to 24.0.26.136. Bitdefender Internet Security versions prior to 24.0.26.136. Bitdefender Total Security versions prior to 24.0.26.136.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.40
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:bitdefender:antivirus_plus:*:*:*:*:*:*:*:* | 24.0.26.136 (excluding) | |
| cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:* | 24.0.26.136 (excluding) | |
| cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:* | 24.0.26.136 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



