CVE-2020-15279: Bitdefender Endpoint Security Tools

Low severity, CVSS 3.3. EPSS: 0.5% chance of exploitation in the next 30 days.

An Improper Access Control vulnerability in the logging component of Bitdefender Endpoint Security Tools for Windows versions prior to 6.6.23.320 allows a regular user to learn the scanning exclusion paths. This issue was discovered during external security research.

Affected products

  • Bitdefender Endpoint Security Tools: before 6.6.23.320 (fixed in 6.6.23.320)

Published 2021-05-18. Last modified 2026-06-17.