Bitdefender Antivirus Free 2020 Untrusted Search Path Vulnerability Allowing Code Execution as SYSTEM

Vulnerability

A vulnerability allowing code execution as SYSTEM has been identified in Bitdefender Antivirus Free 2020. This untrusted search path vulnerability arises in the 'testinitsigs.exe' component, where a low-privilege attacker can exploit the issue by using a specially crafted DLL file.

Impact

Exploitation of this vulnerability allows for unauthorized code execution with SYSTEM privileges.

Remediation

Bitdefender has automatically applied the fix to affected instances. Users can ensure they are on the patched version by checking for updates.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.