CVE-2020-15297 - CVE House
Back to Database
Status published High CVE-2020-15297

Insufficient validation in the Bitdefender Update Server and BEST Relay...

Vulnerability Description

Insufficient validation in the Bitdefender Update Server and BEST Relay components of Bitdefender Endpoint Security Tools versions prior to 6.6.20.294 allows an unprivileged attacker to bypass the in-place mitigations and interact with hosts on the network. This issue affects: Bitdefender Update Server versions prior to 6.6.20.294.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-15297

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Bitdefender

View all reports →

Affected Software

Bitdefender Update Server
Vulnerable Versions:
unspecified

Timeline

Official Publish: November 9th, 2020
Last Modified: September 16th, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Weaknesses (CWE)