CVE-2019-17099: Untrusted Search Path vulnerability in EPSecurityService.exe (VA-3500)
An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issue affects: Bitdefender EPSecurityService.exe versions prior to 6.6.11.163.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2019-17099?
CVE-2019-17099 is an Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163.
What is the severity of CVE-2019-17099?
The severity of CVE-2019-17099 is high with a CVSS score of 7.8.
How does CVE-2019-17099 affect Bitdefender Endpoint Security Tools?
CVE-2019-17099 allows an attacker to load an arbitrary DLL file from the search path in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163.
How can I fix CVE-2019-17099?
To fix CVE-2019-17099, update Bitdefender Endpoint Security Tools to version 6.6.11.163 or later.
Where can I find more information about CVE-2019-17099?
You can find more information about CVE-2019-17099 on the Bitdefender website at the following link: [Untrusted Search Path Vulnerability in EPSecurityService.exe](https://www.bitdefender.com/support/security-advisories/untrusted-search-path-vulnerability-epsecurityservice-exe-va-3500/).