CVE-2025-7073
EUVD-2025-20241610.12.2025, 10:16
A local privilege escalation vulnerability in Bitdefender Total Security 27.0.46.231 allows low-privileged attackers to elevate privileges. The issue arises from bdservicehost.exe deleting files from a user-writable directory (C:\ProgramData\Atc\Feedback) without proper symbolic link validation, enabling arbitrary file deletion. This issue is chained with a file copy operation during network events and a filter driver bypass via DLL injection to achieve arbitrary file copy and code execution as elevated user.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bitdefender | antivirus | 𝑥 < 30.0.25.77 |
| bitdefender | antivirus_plus | 𝑥 < 27.10.45.497 |
| bitdefender | endpoint_security_tools | 𝑥 < 7.9.20.515 |
| bitdefender | internet_security | 𝑥 < 27.10.45.497 |
| bitdefender | total_security | 𝑥 < 27.10.45.497 |
𝑥
= Vulnerable software versions