TOCTOU Vulnerability in BullGuard Premium Protection 20.0.371.8 Allows Privileged File Deletion via Symbolic Link Attack

TOCTOU Vulnerability in BullGuard Premium Protection 20.0.371.8 Allows Privileged File Deletion via Symbolic Link Attack

CVE-2019-20000 · MEDIUM Severity

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

The malware scan function in BullGuard Premium Protection 20.0.371.8 has a TOCTOU issue that enables a symbolic link attack, allowing privileged files to be deleted.

Learn more about our Web Application Penetration Testing UK.