Known Vulnerabilities for Update Server by Bitdefender
Listed below are 3 of the newest known vulnerabilities associated with "Update Server" by "Bitdefender".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-81728 json | Dolibarr before 24.0.0 contains a SQL injection in its CSV and XLSX import wizard. The wizard reads its update keys with GETP... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81528 json | A MongoDB C# driver document-replacement code path omits the element-name/shape validation that the equivalent write paths ap... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81100 json | tiger-gh-mcp-server started its MCP HTTP transport without enabling the host allow-list the underlying SDK provides. src/http... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81099 json | tiger-slack started its MCP HTTP transport without enabling the host allow-list the underlying SDK provides. mcp/src/httpServ... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-78864 json | A vulnerability was determined in liketrek TREK up to 3.0.22. The affected element is the function journeyService.updateEntry... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-78414 json | Cross-site scripting in the Web Administration interface of Network Optix Nx Witness VMS before version 6.1.3 on Linux, Windo... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78321 json | The HTTP media server on DJI drones does not enforce sufficient limits on incoming connections or request rates. An attacker ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-77143 json | The frontend topic editing flow does not verify on the server side that the requesting visitor owns the topic being modified.... | Not Provided | 2026-08-25 | 2026-08-26 |
| CVE-2026-77142 json | The frontend company self-service editing feature relies on a template-level visibility flag to hide the edit form for compan... | Not Provided | 2026-08-25 | 2026-08-27 |
| CVE-2026-76316 json | In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who can reach the Splunk mana... | Not Provided | 2026-08-19 | 2026-08-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bitdefender | Update Server | 6.6.20.294 | |||
| Application | Bitdefender | Update Server | - |