Description
Format string vulnerability in the log creation functionality of BitDefender Client Professional Plus 8.02 allows attackers to execute arbitrary code via certain scan job settings.
Affected products
- Bitdefender / bitdefender_clientprofessional_plus_8.02 – professional_plus_8.02
References
- MISChttp://www.securityfocus.com/archive/1/457414/100/0/threaded
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/31608
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/0253
- MISChttp://www.securityfocus.com/bid/22128
- MAILING_LISThttp://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051883.html
- MISChttp://www.bitdefender.com/KB325-en--Format-string-vulnerability.html