CyberSec.Space Logo
CVEブラウザに戻る

CVE-2019-17096

CRITICAL
9.0
CVSS Severity Score
EPSS Score0.0570%
EPSS Percentile1.77th
Published2020年1月27日
Last Modified2024年11月21日

Vulnerability Description

A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_image_url()` function in special circumstances to inject a system command.

Affected Platforms (CPE)

💻
Bitdefender

Box 2 Firmware

All versions
📦
Bitdefender

Central

< 2.0.66
📦
Bitdefender

Central

< 2.0.66.88

References & Advisories

関連する脆弱性情報