CVE-2025-7073

EUVD-2025-202416
A local privilege escalation vulnerability in Bitdefender Total Security 27.0.46.231 allows low-privileged attackers to elevate privileges. The issue arises from bdservicehost.exe deleting files from a user-writable directory (C:\ProgramData\Atc\Feedback) without proper symbolic link validation, enabling arbitrary file deletion. This issue is chained with a file copy operation during network events and a filter driver bypass via DLL injection to achieve arbitrary file copy and code execution as elevated user.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 6%
Affected Products (NVD)
VendorProductVersion
bitdefenderantivirus
𝑥
< 30.0.25.77
bitdefenderantivirus_plus
𝑥
< 27.10.45.497
bitdefenderendpoint_security_tools
𝑥
< 7.9.20.515
bitdefenderinternet_security
𝑥
< 27.10.45.497
bitdefendertotal_security
𝑥
< 27.10.45.497
𝑥
= Vulnerable software versions