VYPR
High severity7.0NVD Advisory· Published Jul 14, 2026· Updated Aug 12, 2026

CVE-2026-6851

CVE-2026-6851

Description

An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Internet Security on Windows allows a less-privileged local user to elevate rights by leveraging a race conditions via Symbolic Links.

This issue affects Total Security: before 27.0.58.315; Internet Security: before 27.0.58.315.

Affected products

5
  • cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:*range: <27.0.58.315
    • (no CPE)range: <27.0.58.315
  • cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*range: <27.0.58.315
    • (no CPE)range: <27.0.58.315
  • Range: <27.0.58.315

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.