Rewterz

Rewterz Threat Alert – Banks All over the World Attacked by Silence Advanced Hackers

August 22, 2019
Rewterz

Rewterz Threat Alert – Magecart Skimmer via Poker Software

August 23, 2019

Rewterz Threat Advisory – CVE-2019-15295 – BitDefender Antivirus Free 2020 – Privilege Escalation to SYSTEM

Severity

Medium

Analysis Summary

An Untrusted Search Path vulnerability in the ServiceInstance.dll library versions 1.0.15.119 and lower, as used in Bitdefender Antivirus Free 2020 versions prior to 1.0.15.138, allows an attacker to load an arbitrary DLL file from the search path.

Impact

Load an arbitrary DLL file

Affected Vendors

BitDefender

Affected Products

Bitdefender Antivirus Free 2020 versions prior to 1.0.15.138.

Remediation

Update to Bitdefender Antivirus Free version 1.0.15.138.

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.