CVE-2018-8955

Publication date

2018-10-24 22:00:00

Family

mitre

State

PUBLISHED

Description

The installer for BitDefender GravityZone relies on an encoded string in a filename to determine the URL for installation metadata, which allows remote attackers to execute arbitrary code by changing the filename while leaving the files digital signature unchanged.