CVE-2020-8107: Process Control vulnerability in Bitdefender Antivirus Plus
A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with product settings via a specially crafted DLL file. This issue affects: Bitdefender Antivirus Plus versions prior to 24.0.26.136. Bitdefender Internet Security versions prior to 24.0.26.136. Bitdefender Total Security versions prior to 24.0.26.136.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2020-8107?
CVE-2020-8107 is a Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus that allows an attacker to tamper with product settings via a specially crafted DLL file.
Which versions of Bitdefender Antivirus Plus are affected by CVE-2020-8107?
Bitdefender Antivirus Plus versions prior to 24.0.26.136 are affected by CVE-2020-8107.
Which versions of Bitdefender Internet Security are affected by CVE-2020-8107?
Bitdefender Internet Security versions prior to 24.0.26.136 are affected by CVE-2020-8107.
Which versions of Bitdefender Total Security are affected by CVE-2020-8107?
Bitdefender Total Security versions prior to 24.0.26.136 are affected by CVE-2020-8107.
What is the severity of CVE-2020-8107?
CVE-2020-8107 has a severity score of 7.8 (high).
How can CVE-2020-8107 be fixed?
To fix CVE-2020-8107, users should update Bitdefender Antivirus Plus, Bitdefender Internet Security, and Bitdefender Total Security to version 24.0.26.136 or later.