First published: Tue May 18 2021(Updated: )
Uncontrolled Search Path Element vulnerability in the openssl component as used in Bitdefender GravityZone Business Security allows an attacker to load a third party DLL to elevate privileges. This issue affects Bitdefender GravityZone Business Security versions prior to 6.6.23.329.
Credit: cve-requests@bitdefender.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bitdefender GravityZone Business Security | <6.6.23.329 |
An automatic update to version 6.6.23.329 fixes the issue.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3423 is a vulnerability in the openssl component as used in Bitdefender GravityZone Business Security that allows an attacker to load a third party DLL to elevate privileges.
Bitdefender GravityZone Business Security versions prior to 6.6.23.329 are affected by CVE-2021-3423.
CVE-2021-3423 has a severity rating of 7.8 (high).
An attacker can exploit CVE-2021-3423 by loading a third party DLL to elevate privileges.
Yes, upgrading to Bitdefender GravityZone Business Security version 6.6.23.329 or later will fix CVE-2021-3423.