Vulnerability Description
An Improper Access Control vulnerability in the logging component of Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.23.320 allows a regular user to learn the scanning exclusion paths. This issue was discovered during external security research.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitdefender | Endpoint Security Tools | < 6.6.23.320 |
Related Weaknesses (CWE)
References
- https://www.bitdefender.com/support/security-advisories/scanning-exclusion-pathsVendor Advisory
- https://www.bitdefender.com/support/security-advisories/scanning-exclusion-pathsVendor Advisory
FAQ
What is CVE-2020-15279?
CVE-2020-15279 is a vulnerability with a CVSS score of 4.0 (MEDIUM). An Improper Access Control vulnerability in the logging component of Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.23.320 allows a regular user to learn the scanning exclusion ...
How severe is CVE-2020-15279?
CVE-2020-15279 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-15279?
Check the references section above for vendor advisories and patch information. Affected products include: Bitdefender Endpoint Security Tools.