High severity7.0NVD Advisory· Published Jul 14, 2026· Updated Aug 12, 2026
CVE-2026-6851
CVE-2026-6851
Description
An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Internet Security on Windows allows a less-privileged local user to elevate rights by leveraging a race conditions via Symbolic Links.
This issue affects Total Security: before 27.0.58.315; Internet Security: before 27.0.58.315.
Affected products
5cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:*range: <27.0.58.315
- (no CPE)range: <27.0.58.315
cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*range: <27.0.58.315
- (no CPE)range: <27.0.58.315
- Range: <27.0.58.315
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.