Vulnerability Change Records for CVE-2019-6738

Change History

CVE Modified by Zero Day Initiative 6/07/2019 5:29:02 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://www.bitdefender.com/support/security-advisories/bitdefender-safepay-launch-remote-code-execution-vulnerability/ [No Types Assigned]

CVE Modified by Zero Day Initiative 10/09/2019 7:51:38 PM

Action Type Old Value New Value
Added CVSS V3

								
							
							
						
Zero Day Initiative AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
Zero Day Initiative CWE-356

Modified Analysis 10/06/2020 1:29:43 PM

Action Type Old Value New Value
Removed CVSS V3
NIST AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

								
						
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
NIST CWE-78
Removed CWE
NIST CWE-20

								
						
Changed Reference Type
https://www.bitdefender.com/support/security-advisories/bitdefender-safepay-launch-remote-code-execution-vulnerability/ No Types Assigned
https://www.bitdefender.com/support/security-advisories/bitdefender-safepay-launch-remote-code-execution-vulnerability/ Third Party Advisory

Initial Analysis 6/04/2019 10:41:50 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:bitdefender:safepay:23.0.10.34:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Added CVSS V2 Metadata

								
							
							
						
Victim must voluntarily interact with attack mechanism
Added CVSS V3

								
							
							
						
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
CWE-20
Changed Reference Type
https://www.zerodayinitiative.com/advisories/ZDI-19-159/ No Types Assigned
https://www.zerodayinitiative.com/advisories/ZDI-19-159/ Third Party Advisory, VDB Entry