Vulnerability Description
An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issue affects: Bitdefender EPSecurityService.exe versions prior to 6.6.11.163.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitdefender | Endpoint Security Tools | < 6.6.11.163 |
Related Weaknesses (CWE)
References
- https://www.bitdefender.com/support/security-advisories/untrusted-search-path-vuVendor Advisory
- https://www.bitdefender.com/support/security-advisories/untrusted-search-path-vuVendor Advisory
FAQ
What is CVE-2019-17099?
CVE-2019-17099 is a vulnerability with a CVSS score of 5.3 (MEDIUM). An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the se...
How severe is CVE-2019-17099?
CVE-2019-17099 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-17099?
Check the references section above for vendor advisories and patch information. Affected products include: Bitdefender Endpoint Security Tools.