URL Spoofing Vulnerability in Bitdefender SafePay (VA-8958)
CVE-2020-15733

6.5MEDIUM

Key Information:

Vendor
CVE Published:
14 December 2020

What is CVE-2020-15733?

An Origin Validation Error vulnerability in the SafePay component of Bitdefender Antivirus Plus allows a web resource to misrepresent itself in the URL bar. This issue affects: Bitdefender Antivirus Plus versions prior to 25.0.7.29.

Affected Version(s)

Antivirus Plus < 25.0.7.29.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Narendra Bhati
.