CVE-2023-6154

A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitdefender Antivirus Free allows an attacker to change the product's expected behavior and potentially load a third-party library upon execution. This issue affects Total Security: 27.0.25.114; Internet Security: 27.0.25.114; Antivirus Plus: 27.0.25.114; Antivirus Free: 27.0.25.114.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bitdefender:antivirus:27.0.25.114:*:*:*:free:*:*:*
cpe:2.3:a:bitdefender:internet_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:total_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:antivirus_plus:27.0.25.114:*:*:*:*:*:*:*

History

07 Feb 2025, 16:52

Type Values Removed Values Added
First Time Bitdefender internet Security
Bitdefender antivirus
Bitdefender
Bitdefender antivirus Plus
Bitdefender total Security
CWE CWE-15 CWE-610
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CPE cpe:2.3:a:bitdefender:antivirus_plus:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:antivirus:27.0.25.114:*:*:*:free:*:*:*
cpe:2.3:a:bitdefender:total_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:internet_security:27.0.25.114:*:*:*:*:*:*:*
References () https://bitdefender.com/support/security-advisories/local-privilege-escalation-in-bitdefender-total-security-va-11168/ - () https://bitdefender.com/support/security-advisories/local-privilege-escalation-in-bitdefender-total-security-va-11168/ - Vendor Advisory

01 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-01 11:15

Updated : 2025-02-07 16:52


NVD link : CVE-2023-6154

Mitre link : CVE-2023-6154


JSON object : View

Products Affected

bitdefender

  • internet_security
  • antivirus
  • antivirus_plus
  • total_security
CWE
CWE-610

Externally Controlled Reference to a Resource in Another Sphere