First published: Mon Sep 05 2022(Updated: )
Deserialization of Untrusted Data vulnerability in the message processing component of Bitdefender GravityZone Console allows an attacker to pass unsafe commands to the environment. This issue affects: Bitdefender GravityZone Console On-Premise versions prior to 6.29.2-1. Bitdefender GravityZone Cloud Console versions prior to 6.27.2-2.
Credit: cve-requests@bitdefender.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bitdefender GravityZone | <6.27.2-2 | |
Bitdefender GravityZone | <6.29.2-1 |
An automatic update to the following software versions fixes the issue: Bitdefender GravityZone Console On-Premise version 6.29.2-1. Bitdefender GravityZone Cloud Console version 6.27.2-2.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-2830 is a vulnerability in the message processing component of Bitdefender GravityZone Console that allows an attacker to pass unsafe commands to the environment.
CVE-2022-2830 has a severity rating of 9.8, which is classified as critical.
Bitdefender GravityZone Console On-Premise versions prior to 6.29.2-1 and Bitdefender GravityZone Cloud versions up to 6.27.2-2 are affected by CVE-2022-2830.
To fix CVE-2022-2830, you should update Bitdefender GravityZone Console to version 6.29.2-1 or later.
You can find more information about CVE-2022-2830 on the Bitdefender website: [here](https://www.bitdefender.com/support/security-advisories/deserialization-of-untrusted-data-in-gravityzone-console-va-10573).