CVE-2020-15734

MEDIUM

Bitdefender Safepay < 25.0.7.29 - Origin Validation Error via File Upload Manipulation

Title source: llm
STIX 2.1

Description

An Origin Validation Error vulnerability in Bitdefender Safepay allows an attacker to manipulate the browser's file upload capability into accessing other files in the same directory or sub-directories. This issue affects: Bitdefender Safepay versions prior to 25.0.7.29.

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0016
EPSS Percentile 5.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

CWE
CWE-346
Status published
Products (1)
bitdefender/safepay < 25.0.7.29
Published Apr 12, 2021
Tracked Since Feb 18, 2026