CVE-2019-17096
CRITICAL
9.0
CVSS Severity Score
Vulnerability Description
A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_image_url()` function in special circumstances to inject a system command.
Affected Platforms (CPE)
💻
Bitdefender
Box 2 Firmware
All versions📦
Bitdefender
Central
< 2.0.66📦
Bitdefender
