Vulnerabilities > Bitdefender > Internet Security > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-02-18 CVE-2020-8107 Unspecified vulnerability in Bitdefender Antivirus Plus, Internet Security and Total Security
A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with product settings via a specially crafted DLL file.
local
bitdefender
4.4
2021-06-22 CVE-2020-15732 Improper Certificate Validation vulnerability in Bitdefender Antivirus Plus, Internet Security and Total Security
Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Security allows an attacker to potentially bypass HTTP Strict Transport Security (HSTS) checks.
network
low complexity
bitdefender CWE-295
5.0
2009-03-09 CVE-2009-0850 Cross-Site Scripting vulnerability in Bitdefender Internet Security 2009
Cross-site scripting (XSS) vulnerability in BitDefender Internet Security 2009 allows user-assisted remote attackers to inject arbitrary web script or HTML via the filename of a virus-infected file, as demonstrated by a filename inside a (1) rar or (2) zip archive file.
4.3