2 results (0.002 seconds)

CVSS: 10.0EPSS: 9%CPEs: 9EXPL: 0

18 Dec 2006 — Integer overflow in the packed PE file parsing implementation in BitDefender products before 20060829, including Antivirus, Antivirus Plus, Internet Security, Mail Protection for Enterprises, and Online Scanner; and BitDefender products for Microsoft ISA Server and Exchange 5.5 through 2003; allows remote attackers to execute arbitrary code via a crafted file, which triggers a heap-based buffer overflow, aka the "cevakrnl.xmd vulnerability." Desbordamiento de enteros en el fichero de la implementación del a... • http://lists.grok.org.uk/pipermail/full-disclosure/2006-December/051319.html •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

26 Apr 2005 — Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lack of quoting of the full pathname when executing a process. • http://marc.info/?l=bugtraq&m=111420400316397&w=2 •