Vulnerability Name: | CVE-2005-1286 (CCN-20254) | ||||||||
Assigned: | 2005-04-22 | ||||||||
Published: | 2005-04-22 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lack of quoting of the full pathname when executing a process. | ||||||||
CVSS v3 Severity: | 2.9 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 1.2 Low (CVSS v2 Vector: AV:L/AC:H/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Other | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri Apr 22 2005 - 22:03:10 CDT BitDefender 8 - Race condition vulnerability Source: MITRE Type: CNA CVE-2005-1286 Source: BUGTRAQ Type: UNKNOWN 20050422 BitDefender 8 - Race condition vulnerability Source: CCN Type: SA15076 BitDefender Insecure Program Execution Vulnerability Source: SECUNIA Type: UNKNOWN 15076 Source: CCN Type: BitDefender Web site BitDefender AntiVirus Source: OSVDB Type: UNKNOWN 15818 Source: CCN Type: OSVDB ID: 15818 BitDefender Path Subversion Security Bypass Source: XF Type: UNKNOWN bitdefender-race-condition(20254) | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
BACK |