CVE-2019-14242
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue was discovered in Bitdefender products for Windows (Bitdefender Endpoint Security Tool versions prior to 6.6.8.115; and Bitdefender Antivirus Plus, Bitdefender Internet Security, and Bitdefender Total Security versions prior to 23.0.24.120) that can lead to local code injection. A local attacker with administrator privileges can create a malicious DLL file in %SystemRoot%\System32\ that will be executed with local user privileges.
Se detectó un problema en los productos de Bitdefender para Windows (Bitdefender Endpoint Security Tool versiones anteriores a 6.6.8.115; y Bitdefender Antivirus Plus, Bitdefender Internet Security y Bitdefender Total Security versiones anteriores a 23.0.24.120), que puede conllevar a la inyección de código local. Un atacante local con privilegios de administrador puede crear un archivo DLL malicioso en %SystemRoot%-System32 que se ejecutará con privilegios de usuario local.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-07-23 CVE Reserved
- 2019-07-30 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-427: Uncontrolled Search Path Element
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Bitdefender Search vendor "Bitdefender" | Antivirus Plus Search vendor "Bitdefender" for product "Antivirus Plus" | < 23.0.24.120 Search vendor "Bitdefender" for product "Antivirus Plus" and version " < 23.0.24.120" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Bitdefender Search vendor "Bitdefender" | Endpoint Security Tool Search vendor "Bitdefender" for product "Endpoint Security Tool" | < 6.6.8.115 Search vendor "Bitdefender" for product "Endpoint Security Tool" and version " < 6.6.8.115" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Bitdefender Search vendor "Bitdefender" | Internet Security Search vendor "Bitdefender" for product "Internet Security" | < 23.0.24.120 Search vendor "Bitdefender" for product "Internet Security" and version " < 23.0.24.120" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Bitdefender Search vendor "Bitdefender" | Total Security Search vendor "Bitdefender" for product "Total Security" | < 23.0.24.120 Search vendor "Bitdefender" for product "Total Security" and version " < 23.0.24.120" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|