CVE-2020-15732: High severity bitdefender vulnerability
Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Security allows an attacker to potentially bypass HTTP Strict Transport Security (HSTS) checks. This issue affects: Bitdefender Total Security versions prior to 25.0.7.29. Bitdefender Internet Security versions prior to 25.0.7.29. Bitdefender Antivirus Plus versions prior to 25.0.7.29.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2020-15732?
The severity of CVE-2020-15732 is high, with a severity value of 7.5.
How does CVE-2020-15732 affect Bitdefender Total Security?
CVE-2020-15732 affects Bitdefender Total Security versions prior to 25.0.7.29.
What is the vulnerability in Bitdefender Total Security?
The vulnerability in Bitdefender Total Security is an Improper Certificate Validation vulnerability in the Online Threat Prevention module.
How can an attacker exploit CVE-2020-15732?
An attacker can potentially bypass HTTP Strict Transport Security (HSTS) checks using CVE-2020-15732.
How can I fix CVE-2020-15732 in Bitdefender Total Security?
To fix CVE-2020-15732 in Bitdefender Total Security, update to version 25.0.7.29 or later.