CVE-2023-6154

A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitdefender Antivirus Free allows an attacker to change the product's expected behavior and potentially load a third-party library upon execution. This issue affects Total Security: 27.0.25.114; Internet Security: 27.0.25.114; Antivirus Plus: 27.0.25.114; Antivirus Free: 27.0.25.114.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bitdefender:antivirus:27.0.25.114:*:*:*:free:*:*:*
cpe:2.3:a:bitdefender:antivirus_plus:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:internet_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:total_security:27.0.25.114:*:*:*:*:*:*:*

History

07 Feb 2025, 16:52

Type Values Removed Values Added
CWE CWE-610
References () https://bitdefender.com/support/security-advisories/local-privilege-escalation-in-bitdefender-total-security-va-11168/ - () https://bitdefender.com/support/security-advisories/local-privilege-escalation-in-bitdefender-total-security-va-11168/ - Vendor Advisory
First Time Bitdefender total Security
Bitdefender
Bitdefender antivirus
Bitdefender antivirus Plus
Bitdefender internet Security
CPE cpe:2.3:a:bitdefender:internet_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:total_security:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:antivirus_plus:27.0.25.114:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:antivirus:27.0.25.114:*:*:*:free:*:*:*

Information

Published : 2024-04-01 11:15

Updated : 2025-02-07 16:52


NVD link : CVE-2023-6154

Mitre link : CVE-2023-6154

CVE.ORG link : CVE-2023-6154


JSON object : View

Products Affected

bitdefender

  • antivirus_plus
  • antivirus
  • total_security
  • internet_security
CWE
CWE-15

External Control of System or Configuration Setting

CWE-610

Externally Controlled Reference to a Resource in Another Sphere