Bullguard offers consumer and small-business endpoint protection and backup products, with a small but persistent vulnerability footprint centered on its Internet Security and Premium Protection suites alongside the core BDAGENT.sys driver component. The observed weakness classes—including cross-site scripting in web-facing interfaces, buffer-boundary issues in native code, and race conditions in file-system operations—reflect the attack surface inherent to security software that bridges kernel-mode drivers, web components, and backup functionality. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bullguard over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5409HIGH Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Ser | Dec 10, 2008 | 9.3 | 38 | NO | YES |
CVE-2014-9642HIGH bdagent.sys in BullGuard Antivirus, Internet Security, Premium Protection, and Online Backup before 15.0.288 allows local users to write data to arbitrary memory locations, and con | Feb 6, 2015 | 7.2 | 27 | NO | YES |
CVE-2018-17061MEDIUM BullGuard Safe Browsing before 18.1.355.9 allows XSS on Google, Bing, and Yahoo! pages via domains indexed in search results. | Sep 15, 2018 | 6.1 | 21 | NO | NO |
CVE-2019-20000MEDIUM The malware scan function in BullGuard Premium Protection 20.0.371.8 has a TOCTOU issue that enables a symbolic link attack, allowing privileged files to be deleted. | Dec 26, 2019 | 5.9 | 16 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bullguard.
Media articles that mention a CVE ID that affects a product developed by Bullguard — matched by CVE ID, not by vendor name.