| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-2223 | Incorrect Regular Expression in GravityZone Update Server (VA-11465) | Bitdefender | GravityZone Control Center (On Premises) | High | 8.1 | 2024-04-09 13:01:35 | Deep Dive |
| CVE-2023-6154 | Local privilege escalation in Bitdefender Total Security (VA-11168) | Bitdefender | Total Security | High | 7.8 | 2024-04-01 10:06:58 | Deep Dive |
| CVE-2023-3633 | Out of Bounds Memory Corruption Issue in CEVA Engine | Bitdefender | Engines | High | 8.1 | 2023-07-14 19:29:34 | Deep Dive |
| CVE-2022-0357 | Improper Quoting Path Issue in Bitdefender Total Security | Bitdefender | Total Security | Medium | 6.7 | 2023-05-24 07:53:33 | Deep Dive |
| CVE-2022-3369 | Improper handling of registry symbolic links in Bitdefender Engines | Bitdefender | Engines | High | 8.6 | 2022-11-01 07:45:19 | Deep Dive |
| CVE-2022-2830 | Deserialization of Untrusted Data in GravityZone Console On-Premise (VA-10573) | Bitdefender | GravityZone Console On-Premise | High | 8.8 | 2022-09-05 11:55:16 | Deep Dive |
| CVE-2022-0677 | Improper Handling of Length Parameter Inconsistency vulnerability in Bitdefender Update Server (VA-10144) | Bitdefender | Update Server | High | 7.5 | 2022-04-07 18:21:35 | Deep Dive |
| CVE-2021-4199 | Incorrect Permission Assignment for Critical Resource vulnerability in BDReinit.exe (VA-10017) | Bitdefender | Total Security | High | 7.8 | 2022-03-07 11:35:12 | Deep Dive |
| CVE-2021-4198 | messaging_ipc.dll NULL Pointer Dereference in multiple Bitdefender products (VA-10016) | Bitdefender | Total Security | Medium | 6.1 | 2022-03-07 11:30:14 | Deep Dive |
| CVE-2020-8107 | Process Control vulnerability in Bitdefender Antivirus Plus | Bitdefender | Antivirus Plus | High | 8.2 | 2022-02-18 08:20:12 | Deep Dive |
| CVE-2021-3960 | Privilege Escalation via the GravityZone productManager UpdateServer.KitsManager API (VA-10146) | Bitdefender | GravityZone | High | 7.1 | 2021-12-16 14:40:16 | Deep Dive |
| CVE-2021-3959 | Server-Side Request Forgery in Bitdefender GravityZone Update Server in Relay Mode (VA-10145) | Bitdefender | GravityZone | Medium | 6.8 | 2021-12-16 14:35:16 | Deep Dive |
| CVE-2021-3553 | Server-Side Request Forgery in EPPUpdateService remote config file (VA-9825) | Bitdefender | Endpoint Security Tools | Medium | 5.3 | 2021-11-24 14:45:20 | Deep Dive |
| CVE-2021-3554 | Improper Access Control vulnerability in the patchesUpdate API | Bitdefender | Endpoint Security Tools for Linux | Critical | 9.0 | 2021-11-24 14:45:13 | Deep Dive |
| CVE-2021-3552 | Insufficient validation on regular expression in EPPUpdateService config file (VA-9825) | Bitdefender | Endpoint Security Tools | Medium | 5.3 | 2021-11-24 14:40:13 | Deep Dive |
| CVE-2021-3641 | Improper Link Resolution Before File Access in Bitdefender GravityZone (VA-9921) | Bitdefender | GravityZone | Medium | 6.1 | 2021-11-09 14:10:14 | Deep Dive |
| CVE-2021-3823 | Path traversal vulnerability in Bitdefender GravitZone Update Server in relay mode | Bitdefender | GravityZone Update Server | High | 7.1 | 2021-10-28 13:55:13 | Deep Dive |
| CVE-2021-3576 | Privilege escalation via SeImpersonatePrivilege | Bitdefender | Endpoint Security Tools | High | 7.8 | 2021-10-28 13:50:23 | Deep Dive |
| CVE-2021-3579 | Incorrect Default Permissions vulnerability in bdservicehost.exe and Vulnerability.Scan.exe | Bitdefender | ENdpoint Security Tools for Windows | High | 7.8 | 2021-10-28 13:50:15 | Deep Dive |
| CVE-2020-15732 | Bitdefender 多款产品信任管理问题漏洞 | Bitdefender | Total Security | Medium | 6.5 | 2021-06-22 14:50:16 | Deep Dive |