Cyber Resilience
← All news

[UPDATE] [mittel] Bitdefender Internet und Total Security: Schwachstelle ermöglicht Privilegieneskalation

CERT-Bund flags a local privilege-escalation flaw in Bitdefender Internet Security and Total Security. If you run either product, update now.
Sources (1)
What this means for you — CISO:Confirm whether any endpoints still run Bitdefender Internet Security or Total Security (uncommon vs GravityZone); if yes, deploy the vendor update for the local privilege-escalation fix.
What this means for you — Lean IT orgs:If you use Bitdefender Internet Security or Total Security, install the update when offered — a local attacker could raise their privileges on an unpatched machine.
What this means for you — MSP:Inventory client endpoints for Bitdefender Internet Security and Total Security and push the vendor update; these consumer SKUs are easy to miss next to business agents.
What this means for you — Researcher:CERT-Bund WID-SEC-2026-2361: local privilege escalation in Bitdefender Internet Security and Total Security. Track the advisory and any CVE/root-cause write-up.