Vulnerability Description
A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitdefender Antivirus Free allows an attacker to change the product's expected behavior and potentially load a third-party library upon execution. This issue affects Total Security: 27.0.25.114; Internet Security: 27.0.25.114; Antivirus Plus: 27.0.25.114; Antivirus Free: 27.0.25.114.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitdefender | Antivirus | 27.0.25.114 |
| Bitdefender | Antivirus Plus | 27.0.25.114 |
| Bitdefender | Internet Security | 27.0.25.114 |
| Bitdefender | Total Security | 27.0.25.114 |
Related Weaknesses (CWE)
References
- https://bitdefender.com/support/security-advisories/local-privilege-escalation-iVendor Advisory
- https://bitdefender.com/support/security-advisories/local-privilege-escalation-iVendor Advisory
FAQ
What is CVE-2023-6154?
CVE-2023-6154 is a vulnerability with a CVSS score of 7.8 (HIGH). A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitdefender Antivirus Free allows an attacker to change...
How severe is CVE-2023-6154?
CVE-2023-6154 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-6154?
Check the references section above for vendor advisories and patch information. Affected products include: Bitdefender Antivirus, Bitdefender Antivirus Plus, Bitdefender Internet Security, Bitdefender Total Security.