← back
CVE-2019-17099mediumCWE-426

Untrusted Search Path vulnerability in EPSecurityService.exe (VA-3500)

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.3epss 0.7%
exploitation probability
0.7%top 51% of all CVEs
observed exploitation
nono source reports it
An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issue affects: Bitdefender EPSecurityService.exe versions prior to 6.6.11.163.
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:L