CVE-2018-8955
The installer for BitDefender GravityZone relies on an encoded string in a filename to determine the URL for installatio
The installer for BitDefender GravityZone relies on an encoded string in a filename to determine the URL for installation metadata, which allows remote attackers to execute arbitrary code by changing the filename while leaving the file's digital signature unchanged.
CRITICAL · CVSS 9.8
EPSS 0.04698
Act now
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0