HTTP: BitDefender Internet Security Script Code Execution

This signature detects attempts to exploit a known script execution vulnerability in the BitDefender Internet Security software. It is due to insufficient input validation while scanning maliciously crafted archive files. Remote attackers can exploit this by enticing the target users to scan a malicious archive file. If script execution is successful, the behavior of the target depends on the intention of the attacker.

Extended Description

BitDefender Internet Security 2009 is prone to a cross-site scripting vulnerability because it fails to sufficiently sanitize user-supplied data. An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.

Affected Products

Bitdefender internet_security_2009

References

BugTraq: 33921

CVE: CVE-2009-0850

Short Name
HTTP:STC:DL:BITDEFEND-SCRIPT
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
BitDefender CVE-2009-0850 Code Execution Internet Script Security bid:33921
Release Date
10/26/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3735
False Positive
Unknown
Vendors

Bitdefender

CVSS Score

4.3

Found a potential security threat?